aboutsummaryrefslogtreecommitdiffstats
path: root/etc
diff options
context:
space:
mode:
authorLibravatar startx2017 <vradu.startx@yandex.com>2017-05-09 10:32:26 -0400
committerLibravatar startx2017 <vradu.startx@yandex.com>2017-05-09 10:32:26 -0400
commit204f2008600fd1f1cdbf52fd4d029c75d89bf2ea (patch)
treea61f04a5f1ab20b90758d5de2b3ada48f7ba2538 /etc
parentmeasure start time (diff)
downloadfirejail-204f2008600fd1f1cdbf52fd4d029c75d89bf2ea.tar.gz
firejail-204f2008600fd1f1cdbf52fd4d029c75d89bf2ea.tar.zst
firejail-204f2008600fd1f1cdbf52fd4d029c75d89bf2ea.zip
blender and 2048-qt profiles
Diffstat (limited to 'etc')
-rw-r--r--etc/2048-qt.profile27
-rw-r--r--etc/blender.profile28
-rw-r--r--etc/disable-programs.inc2
3 files changed, 57 insertions, 0 deletions
diff --git a/etc/2048-qt.profile b/etc/2048-qt.profile
new file mode 100644
index 000000000..f0ec90ee7
--- /dev/null
+++ b/etc/2048-qt.profile
@@ -0,0 +1,27 @@
1# This file is overwritten during software install.
2# Persistent customizations should go in a .local file.
3include /etc/firejail/2048-qt.local
4
5noblacklist ~/.config/xiaoyong
6noblacklist ~/.config/2048-qt
7include /etc/firejail/disable-common.inc
8include /etc/firejail/disable-programs.inc
9include /etc/firejail/disable-passwdmgr.inc
10
11caps.drop all
12netfilter
13nonewprivs
14noroot
15protocol unix,inet,inet6
16seccomp
17
18#
19# depending on your usage, you can enable some of the commands below:
20#
21nogroups
22shell none
23# private-bin program
24# private-etc none
25# private-dev
26# private-tmp
27nosound
diff --git a/etc/blender.profile b/etc/blender.profile
new file mode 100644
index 000000000..fac6f7731
--- /dev/null
+++ b/etc/blender.profile
@@ -0,0 +1,28 @@
1# This file is overwritten during software install.
2# Persistent customizations should go in a .local file.
3include /etc/firejail/blender.local
4
5noblacklist ~/.config/blender
6include /etc/firejail/disable-common.inc
7include /etc/firejail/disable-programs.inc
8include /etc/firejail/disable-passwdmgr.inc
9
10caps.drop all
11netfilter
12nonewprivs
13noroot
14protocol unix,inet,inet6,netlink
15seccomp
16
17#
18# depending on your usage, you can enable some of the commands below:
19#
20nogroups
21shell none
22# private-bin program
23# private-etc none
24# private-dev
25# private-tmp
26
27# blender uses the sound system
28# nosound
diff --git a/etc/disable-programs.inc b/etc/disable-programs.inc
index 29da32bbf..0ee47a89e 100644
--- a/etc/disable-programs.inc
+++ b/etc/disable-programs.inc
@@ -21,6 +21,7 @@ blacklist ${HOME}/.bcast5
21blacklist ${HOME}/.bibletime 21blacklist ${HOME}/.bibletime
22blacklist ${HOME}/.claws-mail 22blacklist ${HOME}/.claws-mail
23blacklist ${HOME}/.config/0ad 23blacklist ${HOME}/.config/0ad
24blacklist ${HOME}/.config/2048-qt
24blacklist ${HOME}/.config/akregatorrc 25blacklist ${HOME}/.config/akregatorrc
25blacklist ${HOME}/.config/Atom 26blacklist ${HOME}/.config/Atom
26blacklist ${HOME}/.config/Audaciousrc 27blacklist ${HOME}/.config/Audaciousrc
@@ -151,6 +152,7 @@ blacklist ${HOME}/.config/xfce4/xfconf/xfce-perchannel-xml/thunar.xml
151blacklist ${HOME}/.config/xfce4/xfce4-notes.rc 152blacklist ${HOME}/.config/xfce4/xfce4-notes.rc
152blacklist ${HOME}/.config/xfce4/xfce4-notes.gtkrc 153blacklist ${HOME}/.config/xfce4/xfce4-notes.gtkrc
153blacklist ${HOME}/.config/xfce4-dict 154blacklist ${HOME}/.config/xfce4-dict
155blacklist ${HOME}/.config/xiaoyong
154blacklist ${HOME}/.config/xmms2 156blacklist ${HOME}/.config/xmms2
155blacklist ${HOME}/.config/xplayer 157blacklist ${HOME}/.config/xplayer
156blacklist ${HOME}/.config/xreader 158blacklist ${HOME}/.config/xreader