aboutsummaryrefslogtreecommitdiffstats
path: root/etc
diff options
context:
space:
mode:
authorLibravatar netblue30 <netblue30@yahoo.com>2017-05-30 07:41:59 -0400
committerLibravatar netblue30 <netblue30@yahoo.com>2017-05-30 07:41:59 -0400
commit97c41479a02b743c34184f4eace95775136d4831 (patch)
treeeb0f09766ba6f6c0d6fa71c092db7318ac36dd42 /etc
parentMerge pull request #1317 from laniakea64/master (diff)
downloadfirejail-97c41479a02b743c34184f4eace95775136d4831.tar.gz
firejail-97c41479a02b743c34184f4eace95775136d4831.tar.zst
firejail-97c41479a02b743c34184f4eace95775136d4831.zip
darktable and vym profiles
Diffstat (limited to 'etc')
-rw-r--r--etc/darktable.profile30
-rw-r--r--etc/disable-programs.inc1
-rw-r--r--etc/vym.profile30
3 files changed, 61 insertions, 0 deletions
diff --git a/etc/darktable.profile b/etc/darktable.profile
new file mode 100644
index 000000000..29630a746
--- /dev/null
+++ b/etc/darktable.profile
@@ -0,0 +1,30 @@
1# Persistent global definitions go here
2include /etc/firejail/globals.local
3
4# This file is overwritten during software install.
5# Persistent customizations should go in a .local file.
6include /etc/firejail/darktable.local
7
8noblacklist ~/.cache/darktable
9noblacklist ~/.config/darktable
10include /etc/firejail/disable-common.inc
11include /etc/firejail/disable-programs.inc
12include /etc/firejail/disable-passwdmgr.inc
13
14caps.drop all
15netfilter
16nonewprivs
17noroot
18protocol unix,inet,inet6
19seccomp
20
21#
22# depending on your usage, you can enable some of the commands below:
23#
24# nogroups
25shell none
26# private-bin program
27# private-etc none
28# private-dev
29private-tmp
30nosound
diff --git a/etc/disable-programs.inc b/etc/disable-programs.inc
index 12f6d6d6d..af0bbfce6 100644
--- a/etc/disable-programs.inc
+++ b/etc/disable-programs.inc
@@ -35,6 +35,7 @@ blacklist ${HOME}/.config/Gitter
35blacklist ${HOME}/.config/Google 35blacklist ${HOME}/.config/Google
36blacklist ${HOME}/.config/Gpredict 36blacklist ${HOME}/.config/Gpredict
37blacklist ${HOME}/.config/INRIA 37blacklist ${HOME}/.config/INRIA
38blacklist ${HOME}/.config/InSilmaril
38blacklist ${HOME}/.config/Luminance 39blacklist ${HOME}/.config/Luminance
39blacklist ${HOME}/.config/Meltytech 40blacklist ${HOME}/.config/Meltytech
40blacklist ${HOME}/.config/Mousepad 41blacklist ${HOME}/.config/Mousepad
diff --git a/etc/vym.profile b/etc/vym.profile
new file mode 100644
index 000000000..4139ea901
--- /dev/null
+++ b/etc/vym.profile
@@ -0,0 +1,30 @@
1# Persistent global definitions go here
2include /etc/firejail/globals.local
3
4# This file is overwritten during software install.
5# Persistent customizations should go in a .local file.
6include /etc/firejail/vym.local
7
8noblacklist ./.config/InSilmaril
9include /etc/firejail/disable-common.inc
10include /etc/firejail/disable-programs.inc
11include /etc/firejail/disable-passwdmgr.inc
12
13caps.drop all
14netfilter
15nonewprivs
16noroot
17# no network connectivity
18protocol unix
19seccomp
20
21#
22# depending on your usage, you can enable some of the commands below:
23#
24nogroups
25shell none
26# private-bin vym
27# private-etc none
28private-dev
29private-tmp
30nosound