aboutsummaryrefslogtreecommitdiffstats
path: root/etc
diff options
context:
space:
mode:
authorLibravatar netblue30 <netblue30@yahoo.com>2017-06-19 21:08:52 -0400
committerLibravatar netblue30 <netblue30@yahoo.com>2017-06-19 21:08:52 -0400
commite4b03bc316965e6e27bb88d340a5fe0b34669ca1 (patch)
tree02f12d41e2444d43131ca01deed1df61c607eb2a /etc
parentmplayer and smplayer profiles (diff)
downloadfirejail-e4b03bc316965e6e27bb88d340a5fe0b34669ca1.tar.gz
firejail-e4b03bc316965e6e27bb88d340a5fe0b34669ca1.tar.zst
firejail-e4b03bc316965e6e27bb88d340a5fe0b34669ca1.zip
added calibre profile
Diffstat (limited to 'etc')
-rw-r--r--etc/calibre.profile35
-rw-r--r--etc/disable-programs.inc2
-rw-r--r--etc/ebook-viewer.profile10
3 files changed, 47 insertions, 0 deletions
diff --git a/etc/calibre.profile b/etc/calibre.profile
new file mode 100644
index 000000000..b75e0c276
--- /dev/null
+++ b/etc/calibre.profile
@@ -0,0 +1,35 @@
1# Persistent global definitions go here
2include /etc/firejail/globals.local
3
4# This file is overwritten during software install.
5# Persistent customizations should go in a .local file.
6include /etc/firejail/calibre.local
7
8noblacklist ~/.config/calibre
9noblacklist ~/.cache/calibre
10
11include /etc/firejail/disable-common.inc
12include /etc/firejail/disable-programs.inc
13#include /etc/firejail/disable-devel.inc
14include /etc/firejail/disable-passwdmgr.inc
15
16caps.drop all
17#ipc-namespace
18netfilter
19no3d
20nogroups
21nonewprivs
22noroot
23nosound
24novideo
25protocol unix,inet,inet6
26seccomp
27shell none
28tracelog
29
30#private-bin
31private-dev
32private-tmp
33
34noexec ${HOME}
35noexec /tmp
diff --git a/etc/disable-programs.inc b/etc/disable-programs.inc
index 3b2c150fc..7a3ca37ed 100644
--- a/etc/disable-programs.inc
+++ b/etc/disable-programs.inc
@@ -62,6 +62,7 @@ blacklist ${HOME}/.config/borg
62blacklist ${HOME}/.config/brasero 62blacklist ${HOME}/.config/brasero
63blacklist ${HOME}/.config/brave 63blacklist ${HOME}/.config/brave
64blacklist ${HOME}/.config/caja 64blacklist ${HOME}/.config/caja
65blacklist ${HOME}/.config/calibre
65blacklist ${HOME}/.config/catfish 66blacklist ${HOME}/.config/catfish
66blacklist ${HOME}/.config/cherrytree 67blacklist ${HOME}/.config/cherrytree
67blacklist ${HOME}/.config/chromium 68blacklist ${HOME}/.config/chromium
@@ -361,6 +362,7 @@ blacklist ${HOME}/.cache/INRIA
361blacklist ${HOME}/.cache/QuiteRss 362blacklist ${HOME}/.cache/QuiteRss
362blacklist ${HOME}/.cache/attic 363blacklist ${HOME}/.cache/attic
363blacklist ${HOME}/.cache/borg 364blacklist ${HOME}/.cache/borg
365blacklist ${HOME}/.cache/calibre
364blacklist ${HOME}/.cache/champlain 366blacklist ${HOME}/.cache/champlain
365blacklist ${HOME}/.cache/chromium 367blacklist ${HOME}/.cache/chromium
366blacklist ${HOME}/.cache/qupzilla 368blacklist ${HOME}/.cache/qupzilla
diff --git a/etc/ebook-viewer.profile b/etc/ebook-viewer.profile
new file mode 100644
index 000000000..ba28e3550
--- /dev/null
+++ b/etc/ebook-viewer.profile
@@ -0,0 +1,10 @@
1# Persistent global definitions go here
2include /etc/firejail/globals.local
3
4# This file is overwritten during software install.
5# Persistent customizations should go in a .local file.
6include /etc/firejail/ebook-viewer.local
7
8# Firejail profile for ebook-viewer (Calibre)
9include /etc/firejail/calibre.profile
10net none