aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
-rw-r--r--etc/gnome-pie.profile41
1 files changed, 41 insertions, 0 deletions
diff --git a/etc/gnome-pie.profile b/etc/gnome-pie.profile
new file mode 100644
index 000000000..be408ea93
--- /dev/null
+++ b/etc/gnome-pie.profile
@@ -0,0 +1,41 @@
1# Firejail profile for gnome-pie
2# Description: Alternative AppMenu
3# This file is overwritten after every install/update
4# Persistent local customizations
5include /etc/firejail/gnome-pie.local
6# Persistent global definitions
7include /etc/firejail/globals.local
8
9#include /etc/firejail/disable-common.inc
10include /etc/firejail/disable-devel.inc
11#include /etc/firejail/disable-interpreters.inc
12include /etc/firejail/disable-passwdmgr.inc
13#include /etc/firejail/disable-programs.inc
14
15caps.drop all
16ipc-namespace
17machine-id
18net none
19no3d
20nodvd
21nogroups
22nonewprivs
23noroot
24nosound
25notv
26nou2f
27novideo
28protocol unix
29seccomp
30shell none
31
32disable-mnt
33private-cache
34private-dev
35private-etc fonts
36private-lib gdk-pixbuf-2.*,gio,gvfs/libgvfscommon.so,libgconf-2.so.*,librsvg-2.so.*
37private-tmp
38
39memory-deny-write-execute
40noexec ${HOME}
41noexec /tmp