diff options
author | rusty-snake <print_hello_world+Public@protonmail.com> | 2020-03-19 19:14:24 +0100 |
---|---|---|
committer | rusty-snake <print_hello_world+Public@protonmail.com> | 2020-03-19 19:14:37 +0100 |
commit | 49e763ef0f9d6fd3eb80fbee3afc94ebfc731502 (patch) | |
tree | 1dd91f55959357306dd82eb8578e04186bf7d751 /etc | |
parent | various profile fixes (diff) | |
download | firejail-49e763ef0f9d6fd3eb80fbee3afc94ebfc731502.tar.gz firejail-49e763ef0f9d6fd3eb80fbee3afc94ebfc731502.tar.zst firejail-49e763ef0f9d6fd3eb80fbee3afc94ebfc731502.zip |
harden baobab and gitg
Diffstat (limited to 'etc')
-rw-r--r-- | etc/baobab.profile | 1 | ||||
-rw-r--r-- | etc/gitg.profile | 8 |
2 files changed, 9 insertions, 0 deletions
diff --git a/etc/baobab.profile b/etc/baobab.profile index 18c862a4d..d87de9d66 100644 --- a/etc/baobab.profile +++ b/etc/baobab.profile | |||
@@ -29,6 +29,7 @@ novideo | |||
29 | protocol unix | 29 | protocol unix |
30 | seccomp | 30 | seccomp |
31 | shell none | 31 | shell none |
32 | tracelog | ||
32 | 33 | ||
33 | private-bin baobab | 34 | private-bin baobab |
34 | private-dev | 35 | private-dev |
diff --git a/etc/gitg.profile b/etc/gitg.profile index 56f8e136f..3c6f9d72f 100644 --- a/etc/gitg.profile +++ b/etc/gitg.profile | |||
@@ -19,6 +19,14 @@ include disable-interpreters.inc | |||
19 | include disable-passwdmgr.inc | 19 | include disable-passwdmgr.inc |
20 | include disable-programs.inc | 20 | include disable-programs.inc |
21 | 21 | ||
22 | #whitelist ${HOME}/YOUR_GIT_PROJECTS_DIRECTORY | ||
23 | #whitelist ${HOME}/.config/git | ||
24 | #whitelist ${HOME}/.gitconfig | ||
25 | #whitelist ${HOME}/.git-credentials | ||
26 | #whitelist ${HOME}/.local/share/gitg | ||
27 | #whitelist ${HOME}/.ssh | ||
28 | #include whitelist-common.inc | ||
29 | |||
22 | whitelist /usr/share/gitg | 30 | whitelist /usr/share/gitg |
23 | include whitelist-usr-share-common.inc | 31 | include whitelist-usr-share-common.inc |
24 | include whitelist-var-common.inc | 32 | include whitelist-var-common.inc |