diff options
author | Kelvin M. Klann <kmk3.code@protonmail.com> | 2022-10-05 07:35:52 -0300 |
---|---|---|
committer | Kelvin M. Klann <kmk3.code@protonmail.com> | 2022-10-05 08:06:47 -0300 |
commit | dbebd71db1ed071d2c0274a6fa3bdcbf84808c46 (patch) | |
tree | fb492d80e16f4e0e91629007b0e2b7c472a95f04 /etc | |
parent | Merge branch 'master' of ssh://github.com/netblue30/firejail (diff) | |
download | firejail-dbebd71db1ed071d2c0274a6fa3bdcbf84808c46.tar.gz firejail-dbebd71db1ed071d2c0274a6fa3bdcbf84808c46.tar.zst firejail-dbebd71db1ed071d2c0274a6fa3bdcbf84808c46.zip |
disable-common.inc: blacklist doas binary
OpenDoas is an alternative to sudo. It is an unofficial port of
OpenBSD's doas. Details:
$ LC_ALL=C pacman -Si galaxy/opendoas |
grep -e '^Version' -e '^Description' -e '^URL'
Version : 6.8.2-1
Description : Run commands as super user or another user
URL : https://github.com/Duncaen/OpenDoas
Environment: Artix Linux.
Also, add /etc/doas.conf to etc/ids.config.
Diffstat (limited to 'etc')
-rw-r--r-- | etc/ids.config | 1 | ||||
-rw-r--r-- | etc/inc/disable-common.inc | 1 |
2 files changed, 2 insertions, 0 deletions
diff --git a/etc/ids.config b/etc/ids.config index 1217d4a3a..880ec6ab5 100644 --- a/etc/ids.config +++ b/etc/ids.config | |||
@@ -128,6 +128,7 @@ ${HOME}/.local/share/autostart | |||
128 | /etc/apparmor* | 128 | /etc/apparmor* |
129 | /etc/chkrootkit.conf | 129 | /etc/chkrootkit.conf |
130 | /etc/cracklib | 130 | /etc/cracklib |
131 | /etc/doas.conf | ||
131 | /etc/libaudit.conf | 132 | /etc/libaudit.conf |
132 | /etc/group* | 133 | /etc/group* |
133 | /etc/gshadow* | 134 | /etc/gshadow* |
diff --git a/etc/inc/disable-common.inc b/etc/inc/disable-common.inc index 5918ee640..23886f1b6 100644 --- a/etc/inc/disable-common.inc +++ b/etc/inc/disable-common.inc | |||
@@ -479,6 +479,7 @@ blacklist ${PATH}/chage | |||
479 | blacklist ${PATH}/chfn | 479 | blacklist ${PATH}/chfn |
480 | blacklist ${PATH}/chsh | 480 | blacklist ${PATH}/chsh |
481 | blacklist ${PATH}/crontab | 481 | blacklist ${PATH}/crontab |
482 | blacklist ${PATH}/doas | ||
482 | blacklist ${PATH}/evtest | 483 | blacklist ${PATH}/evtest |
483 | blacklist ${PATH}/expiry | 484 | blacklist ${PATH}/expiry |
484 | blacklist ${PATH}/fusermount | 485 | blacklist ${PATH}/fusermount |