aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
-rw-r--r--README.md2
-rw-r--r--RELNOTES2
-rw-r--r--etc/disable-programs.inc2
-rw-r--r--etc/tvbrowser.profile51
-rw-r--r--src/firecfg/firecfg.config1
5 files changed, 56 insertions, 2 deletions
diff --git a/README.md b/README.md
index b4288bf40..52c49d595 100644
--- a/README.md
+++ b/README.md
@@ -151,4 +151,4 @@ We also keep a list of profile fixes for previous released versions in [etc-fixe
151 151
152### New profiles: 152### New profiles:
153 153
154firefox-x11 154firefox-x11, tvbrowser
diff --git a/RELNOTES b/RELNOTES
index 079753639..ae98e1a65 100644
--- a/RELNOTES
+++ b/RELNOTES
@@ -1,7 +1,7 @@
1firejail (0.9.63) baseline; urgency=low 1firejail (0.9.63) baseline; urgency=low
2 * work in progress 2 * work in progress
3 * DHCP client support 3 * DHCP client support
4 * new profiles: firefox-x11 4 * new profiles: firefox-x11, tvbrowser
5 5
6firejail (0.9.62) baseline; urgency=low 6firejail (0.9.62) baseline; urgency=low
7 * added file-copy-limit in /etc/firejail/firejail.config 7 * added file-copy-limit in /etc/firejail/firejail.config
diff --git a/etc/disable-programs.inc b/etc/disable-programs.inc
index 7e8e67656..25bc37801 100644
--- a/etc/disable-programs.inc
+++ b/etc/disable-programs.inc
@@ -312,6 +312,7 @@ blacklist ${HOME}/.config/tox
312blacklist ${HOME}/.config/transgui 312blacklist ${HOME}/.config/transgui
313blacklist ${HOME}/.config/transmission 313blacklist ${HOME}/.config/transmission
314blacklist ${HOME}/.config/truecraft 314blacklist ${HOME}/.config/truecraft
315blacklist ${HOME}/.config/tvbrowser
315blacklist ${HOME}/.config/uGet 316blacklist ${HOME}/.config/uGet
316blacklist ${HOME}/.config/uzbl 317blacklist ${HOME}/.config/uzbl
317blacklist ${HOME}/.config/viewnior 318blacklist ${HOME}/.config/viewnior
@@ -663,6 +664,7 @@ blacklist ${HOME}/.torcs
663blacklist ${HOME}/.tremulous 664blacklist ${HOME}/.tremulous
664blacklist ${HOME}/.ts3client 665blacklist ${HOME}/.ts3client
665blacklist ${HOME}/.tuxguitar* 666blacklist ${HOME}/.tuxguitar*
667blacklist ${HOME}/.tvbrowser
666blacklist ${HOME}/.unknown-horizons 668blacklist ${HOME}/.unknown-horizons
667blacklist ${HOME}/.viking 669blacklist ${HOME}/.viking
668blacklist ${HOME}/.viking-maps 670blacklist ${HOME}/.viking-maps
diff --git a/etc/tvbrowser.profile b/etc/tvbrowser.profile
new file mode 100644
index 000000000..6e028b086
--- /dev/null
+++ b/etc/tvbrowser.profile
@@ -0,0 +1,51 @@
1# Firejail profile for tvbrowser
2# Description: java tv programm form tvbrowser.org
3# This file is overwritten after every install/update
4# Persistent local customizations
5include tvbrowser.local
6# Persistent global definitions
7include globals.local
8
9noblacklist ${HOME}/.config/tvbrowser
10noblacklist ${HOME}/.tvbrowser
11
12# Allow java (blacklisted by disable-devel.inc)
13include allow-java.inc
14
15include disable-common.inc
16include disable-devel.inc
17include disable-exec.inc
18include disable-interpreters.inc
19include disable-passwdmgr.inc
20include disable-programs.inc
21include disable-xdg.inc
22
23mkdir ${HOME}/.config/tvbrowser
24mkdir ${HOME}/.tvbrowser
25whitelist ${HOME}/.config/tvbrowser
26whitelist ${HOME}/.tvbrowser
27whitelist /usr/share/tvbrowser
28include whitelist-common.inc
29include whitelist-usr-share-common.inc
30include whitelist-var-common.inc
31
32caps.drop all
33netfilter
34no3d
35nodbus
36nodvd
37nogroups
38nonewprivs
39noroot
40notv
41nou2f
42novideo
43protocol unix,inet,inet6
44seccomp
45shell none
46tracelog
47
48disable-mnt
49private-cache
50private-dev
51private-tmp
diff --git a/src/firecfg/firecfg.config b/src/firecfg/firecfg.config
index a9a191ea0..a212915e0 100644
--- a/src/firecfg/firecfg.config
+++ b/src/firecfg/firecfg.config
@@ -642,6 +642,7 @@ tremulous
642truecraft 642truecraft
643tshark 643tshark
644tuxguitar 644tuxguitar
645tvbrowser
645udiskie 646udiskie
646uefitool 647uefitool
647uget-gtk 648uget-gtk