aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
-rw-r--r--README.md2
-rw-r--r--RELNOTES3
-rw-r--r--etc/beaker.profile1
-rw-r--r--etc/electrum.profile52
-rw-r--r--src/firecfg/firecfg.config2
5 files changed, 57 insertions, 3 deletions
diff --git a/README.md b/README.md
index 6060bcdca..644a911b4 100644
--- a/README.md
+++ b/README.md
@@ -167,4 +167,4 @@ We also keep a list of profile fixes for previous released versions in [etc-fixe
167## New profiles 167## New profiles
168Microsoft Office Online, riot-desktop, gnome-mpv, snox, gradio, standardnotes-desktop, 168Microsoft Office Online, riot-desktop, gnome-mpv, snox, gradio, standardnotes-desktop,
169shellcheck, patch, flameshot, rview, rvim, vimcat, vimdiff, vimpager, vimtutor, 169shellcheck, patch, flameshot, rview, rvim, vimcat, vimdiff, vimpager, vimtutor,
170xxd, Beaker 170xxd, Beaker, electrum
diff --git a/RELNOTES b/RELNOTES
index 7dceccc0c..974999bcb 100644
--- a/RELNOTES
+++ b/RELNOTES
@@ -15,7 +15,8 @@ firejail (0.9.56~rc1) baseline; urgency=low
15 * new profiles: ms-excel, ms-office, ms-onenote, ms-outlook, ms-powerpoint, 15 * new profiles: ms-excel, ms-office, ms-onenote, ms-outlook, ms-powerpoint,
16 * new profiles: ms-skype, ms-word, riot-desktop, gnome-mpv, snox, gradio, 16 * new profiles: ms-skype, ms-word, riot-desktop, gnome-mpv, snox, gradio,
17 * new profiles: standardnotes-desktop, shellcheck, patch, flameshot, 17 * new profiles: standardnotes-desktop, shellcheck, patch, flameshot,
18 * new profiles: rview, rvim, vimcat, vimdiff, vimpager, vimtutor, xxd 18 * new profiles: rview, rvim, vimcat, vimdiff, vimpager, vimtutor, xxd,
19 * new profiles: Beaker, electrum
19 -- netblue30 <netblue30@yahoo.com> Sat, 11 Aug 2018 08:00:00 -0500 20 -- netblue30 <netblue30@yahoo.com> Sat, 11 Aug 2018 08:00:00 -0500
20 21
21firejail (0.9.54) baseline; urgency=low 22firejail (0.9.54) baseline; urgency=low
diff --git a/etc/beaker.profile b/etc/beaker.profile
index 4c884e77e..9215576c7 100644
--- a/etc/beaker.profile
+++ b/etc/beaker.profile
@@ -13,7 +13,6 @@ include /etc/firejail/disable-interpreters.inc
13mkdir ${HOME}/.config/Beaker Browser 13mkdir ${HOME}/.config/Beaker Browser
14whitelist ${HOME}/.config/Beaker Browser 14whitelist ${HOME}/.config/Beaker Browser
15whitelist ${DOWNLOADS} 15whitelist ${DOWNLOADS}
16
17include /etc/firejail/whitelist-common.inc 16include /etc/firejail/whitelist-common.inc
18 17
19# Redirect 18# Redirect
diff --git a/etc/electrum.profile b/etc/electrum.profile
new file mode 100644
index 000000000..d611f3e61
--- /dev/null
+++ b/etc/electrum.profile
@@ -0,0 +1,52 @@
1# Firejail profile for electrum
2# This file is overwritten after every install/update
3# Persistent local customizations
4include /etc/firejail/electrum.local
5# Persistent global definitions
6include /etc/firejail/globals.local
7
8noblacklist ${HOME}/.electrum
9
10# Allow python (blacklisted by disable-interpreters.inc)
11noblacklist ${PATH}/python2*
12noblacklist ${PATH}/python3*
13noblacklist /usr/lib/python2*
14noblacklist /usr/lib/python3*
15
16include /etc/firejail/disable-common.inc
17include /etc/firejail/disable-devel.inc
18include /etc/firejail/disable-interpreters.inc
19include /etc/firejail/disable-passwdmgr.inc
20include /etc/firejail/disable-programs.inc
21include /etc/firejail/disable-xdg.inc
22
23mkdir ${HOME}/.electrum
24whitelist ${HOME}/.electrum
25include /etc/firejail/whitelist-common.inc
26include /etc/firejail/whitelist-var-common.inc
27
28caps.drop all
29ipc-namespace
30netfilter
31no3d
32#nodbus
33nodvd
34nogroups
35nonewprivs
36noroot
37nosound
38notv
39novideo
40protocol unix,inet,inet6
41seccomp
42shell none
43
44disable-mnt
45private-bin electrum,python*
46private-cache
47private-dev
48private-etc fonts,dconf,ca-certificates,ssl,pki,crypto-policies,machine-id
49private-tmp
50
51noexec ${HOME}
52noexec /tmp
diff --git a/src/firecfg/firecfg.config b/src/firecfg/firecfg.config
index 2585d204a..a33aaeb49 100644
--- a/src/firecfg/firecfg.config
+++ b/src/firecfg/firecfg.config
@@ -46,6 +46,7 @@ baloo_file
46baloo_filemetadata_temp_extractor 46baloo_filemetadata_temp_extractor
47baobab 47baobab
48basilisk 48basilisk
49beaker
49bibletime 50bibletime
50bitlbee 51bitlbee
51bleachbit 52bleachbit
@@ -108,6 +109,7 @@ dosbox
108dragon 109dragon
109dropbox 110dropbox
110ebook-viewer 111ebook-viewer
112electrum
111elinks 113elinks
112empathy 114empathy
113enchant 115enchant