diff options
Diffstat (limited to 'etc/ardour5.profile')
-rw-r--r-- | etc/ardour5.profile | 25 |
1 files changed, 11 insertions, 14 deletions
diff --git a/etc/ardour5.profile b/etc/ardour5.profile index f17c74e2b..42744f4dd 100644 --- a/etc/ardour5.profile +++ b/etc/ardour5.profile | |||
@@ -5,19 +5,16 @@ include /etc/firejail/ardour5.local | |||
5 | # Persistent global definitions | 5 | # Persistent global definitions |
6 | include /etc/firejail/globals.local | 6 | include /etc/firejail/globals.local |
7 | 7 | ||
8 | blacklist /boot | ||
9 | blacklist /media | ||
10 | blacklist /mnt | ||
11 | blacklist /opt | ||
12 | blacklist /usr/local/bin | ||
13 | 8 | ||
14 | whitelist ${DOWNLOADS} | 9 | noblacklist ${HOME}/.config/ardour4 |
15 | whitelist ${HOME}/.config/ardour4 | 10 | noblacklist ${HOME}/.config/ardour5 |
16 | whitelist ${HOME}/.config/ardour5 | 11 | noblacklist ${HOME}/.lv2 |
17 | whitelist ${HOME}/.lv2 | 12 | noblacklist ${HOME}/.vst |
18 | whitelist ${HOME}/.vst | 13 | |
19 | whitelist ${HOME}/Documents | 14 | include /etc/firejail/disable-common.inc |
20 | include /etc/firejail/whitelist-common.inc | 15 | include /etc/firejail/disable-devel.inc |
16 | include /etc/firejail/disable-passwdmgr.inc | ||
17 | include /etc/firejail/disable-programs.inc | ||
21 | 18 | ||
22 | caps.drop all | 19 | caps.drop all |
23 | ipc-namespace | 20 | ipc-namespace |
@@ -27,9 +24,9 @@ noroot | |||
27 | seccomp | 24 | seccomp |
28 | shell none | 25 | shell none |
29 | 26 | ||
30 | private-bin sh,ardour5,ardour5-copy-mixer,ardour5-export,ardour5-fix_bbtppq,grep,sed,ldd,nm | 27 | #private-bin sh,ardour5,ardour5-copy-mixer,ardour5-export,ardour5-fix_bbtppq,grep,sed,ldd,nm |
31 | private-dev | 28 | private-dev |
32 | private-etc pulse,X11,alternatives,ardour4,ardour5,fonts | 29 | #private-etc pulse,X11,alternatives,ardour4,ardour5,fonts |
33 | private-tmp | 30 | private-tmp |
34 | 31 | ||
35 | noexec /home | 32 | noexec /home |