aboutsummaryrefslogtreecommitdiffstats
path: root/etc
diff options
context:
space:
mode:
authorLibravatar netblue30 <netblue30@yahoo.com>2015-09-16 07:33:08 -0400
committerLibravatar netblue30 <netblue30@yahoo.com>2015-09-16 07:33:08 -0400
commit1265803f63a2f7e5fcb778dac34efe7436eba8c1 (patch)
tree00390b5812c63d43111de8e7dba3cbabd0fd7712 /etc
parentrelease 0.9.30 (diff)
downloadfirejail-1265803f63a2f7e5fcb778dac34efe7436eba8c1.tar.gz
firejail-1265803f63a2f7e5fcb778dac34efe7436eba8c1.tar.zst
firejail-1265803f63a2f7e5fcb778dac34efe7436eba8c1.zip
Default profiles work
Diffstat (limited to 'etc')
-rw-r--r--etc/disable-common.inc20
-rw-r--r--etc/fbreader.profile11
2 files changed, 31 insertions, 0 deletions
diff --git a/etc/disable-common.inc b/etc/disable-common.inc
index f4aea1b6a..984bbe628 100644
--- a/etc/disable-common.inc
+++ b/etc/disable-common.inc
@@ -20,3 +20,23 @@ blacklist ${HOME}/.remmina
20 20
21# Other 21# Other
22blacklist ${HOME}/.tconn 22blacklist ${HOME}/.tconn
23blacklist ${HOME}/.FBReader
24
25# X11 session autostart
26blacklist ${HOME}/.xinitrc
27blacklist ${HOME}/.xprofile
28blacklist ${HOME}/.config/autostart
29blacklist /etc/xdg/autostart
30blacklist ${HOME}/.kde4/Autostart
31blacklist ${HOME}/.kde/Autostart
32blacklist ${HOME}/.config/plasma-workspace/shutdown
33blacklist ${HOME}/.config/plasma-workspace/env
34blacklist ${HOME}/.config/lxsession/LXDE/autostart
35blacklist ${HOME}/.fluxbox/startup
36blacklist ${HOME}/.config/openbox/autostart
37blacklist ${HOME}/.config/openbox/environment
38
39# git, subversion
40blacklist ${HOME}/.subversion
41blacklist ${HOME}/.gitconfig
42blacklist ${HOME}/.git-credential-cache
diff --git a/etc/fbreader.profile b/etc/fbreader.profile
new file mode 100644
index 000000000..97baa2a3e
--- /dev/null
+++ b/etc/fbreader.profile
@@ -0,0 +1,11 @@
1# fbreader profile
2noblacklist ${HOME}/.FBReader
3include /etc/firejail/disable-mgmt.inc
4include /etc/firejail/disable-secret.inc
5include /etc/firejail/disable-common.inc
6include /etc/firejail/disable-history.inc
7caps.drop all
8seccomp
9netfilter
10noroot
11