diff options
author | 2015-12-06 10:45:40 -0500 | |
---|---|---|
committer | 2015-12-06 10:45:40 -0500 | |
commit | 85ed40ed6e0128ffcadf6f29fa7ad68210f11aea (patch) | |
tree | 1d5a7e36feef965c336e56f8b73afa24bd02e28a /etc | |
parent | memory leak (diff) | |
parent | add parole.profile (diff) | |
download | firejail-85ed40ed6e0128ffcadf6f29fa7ad68210f11aea.tar.gz firejail-85ed40ed6e0128ffcadf6f29fa7ad68210f11aea.tar.zst firejail-85ed40ed6e0128ffcadf6f29fa7ad68210f11aea.zip |
Merge pull request #186 from avoidr/parole.profile
add parole.profile
Diffstat (limited to 'etc')
-rw-r--r-- | etc/parole.profile | 17 |
1 files changed, 17 insertions, 0 deletions
diff --git a/etc/parole.profile b/etc/parole.profile new file mode 100644 index 000000000..24181c8d6 --- /dev/null +++ b/etc/parole.profile | |||
@@ -0,0 +1,17 @@ | |||
1 | # Profile for Parole, the default XFCE4 media player | ||
2 | include /etc/firejail/disable-mgmt.inc | ||
3 | include /etc/firejail/disable-secret.inc | ||
4 | include /etc/firejail/disable-common.inc | ||
5 | include /etc/firejail/disable-devel.inc | ||
6 | private-etc passwd,group,fonts | ||
7 | private-bin parole,dbus-launch | ||
8 | blacklist ${HOME}/.pki/nssdb | ||
9 | blacklist ${HOME}/.lastpass | ||
10 | blacklist ${HOME}/.keepassx | ||
11 | blacklist ${HOME}/.password-store | ||
12 | caps.drop all | ||
13 | seccomp | ||
14 | protocol unix,inet,inet6 | ||
15 | netfilter | ||
16 | noroot | ||
17 | shell none | ||