aboutsummaryrefslogtreecommitdiffstats
path: root/etc
diff options
context:
space:
mode:
authorLibravatar netblue30 <netblue30@yahoo.com>2016-06-20 11:47:43 -0400
committerLibravatar GitHub <noreply@github.com>2016-06-20 11:47:43 -0400
commit370dd9a27893e05bd7766269b5e1e59eb18e713d (patch)
tree6beb68e7d2e8ec2463f33ef8f355e1067e347ac9 /etc
parentMerge pull request #586 from avoidr/mpv.profile (diff)
parentextra Pix files (diff)
downloadfirejail-370dd9a27893e05bd7766269b5e1e59eb18e713d.tar.gz
firejail-370dd9a27893e05bd7766269b5e1e59eb18e713d.tar.zst
firejail-370dd9a27893e05bd7766269b5e1e59eb18e713d.zip
Merge pull request #585 from Fred-Barclay/proposed
Proposed
Diffstat (limited to 'etc')
-rw-r--r--etc/disable-programs.inc2
-rw-r--r--etc/pix.profile19
2 files changed, 21 insertions, 0 deletions
diff --git a/etc/disable-programs.inc b/etc/disable-programs.inc
index a5b33c860..70deb2b0c 100644
--- a/etc/disable-programs.inc
+++ b/etc/disable-programs.inc
@@ -17,6 +17,7 @@ blacklist ${HOME}/.config/atril
17blacklist ${HOME}/.config/xreader 17blacklist ${HOME}/.config/xreader
18blacklist ${HOME}/.config/xviewer 18blacklist ${HOME}/.config/xviewer
19blacklist ${HOME}/.config/libreoffice 19blacklist ${HOME}/.config/libreoffice
20blacklist ${HOME}/.config/pix
20blacklist ${HOME}/.kde/share/apps/okular 21blacklist ${HOME}/.kde/share/apps/okular
21blacklist ${HOME}/.kde/share/config/okularrc 22blacklist ${HOME}/.kde/share/config/okularrc
22blacklist ${HOME}/.kde/share/config/okularpartrc 23blacklist ${HOME}/.kde/share/config/okularpartrc
@@ -120,3 +121,4 @@ blacklist ${HOME}/.local/share/0ad
120blacklist ${HOME}/.local/share/xplayer 121blacklist ${HOME}/.local/share/xplayer
121blacklist ${HOME}/.local/share/totem 122blacklist ${HOME}/.local/share/totem
122blacklist ${HOME}/.local/share/psi+ 123blacklist ${HOME}/.local/share/psi+
124blacklist ${HOME}/.local/share/pix
diff --git a/etc/pix.profile b/etc/pix.profile
new file mode 100644
index 000000000..ccf0c0381
--- /dev/null
+++ b/etc/pix.profile
@@ -0,0 +1,19 @@
1# gthumb profile
2noblacklist ${HOME}/.config/pix
3noblacklist ${HOME}/.local/share/pix
4
5include /etc/firejail/disable-common.inc
6include /etc/firejail/disable-programs.inc
7include /etc/firejail/disable-devel.inc
8include /etc/firejail/disable-passwdmgr.inc
9
10caps.drop all
11netfilter
12nonewprivs
13noroot
14protocol unix,inet,inet6
15seccomp
16
17shell none
18private-bin pix
19whitelist /tmp/.X11-unix