aboutsummaryrefslogtreecommitdiffstats
path: root/etc/brave.profile
diff options
context:
space:
mode:
Diffstat (limited to 'etc/brave.profile')
-rw-r--r--etc/brave.profile51
1 files changed, 22 insertions, 29 deletions
diff --git a/etc/brave.profile b/etc/brave.profile
index e73dd37a2..20dbf6c52 100644
--- a/etc/brave.profile
+++ b/etc/brave.profile
@@ -1,43 +1,36 @@
1# Persistent global definitions go here 1# Firejail profile for brave
2include /etc/firejail/globals.local 2# This file is overwritten after every install/update
3 3# Persistent local customizations
4# This file is overwritten during software install.
5# Persistent customizations should go in a .local file.
6include /etc/firejail/brave.local 4include /etc/firejail/brave.local
5# Persistent global definitions
6include /etc/firejail/globals.local
7 7
8# Profile for Brave browser
9noblacklist ~/.config/brave 8noblacklist ~/.config/brave
10noblacklist ~/.pki
11
12# brave uses gpg for built-in password manager 9# brave uses gpg for built-in password manager
13noblacklist ~/.gnupg 10noblacklist ~/.gnupg
11noblacklist ~/.pki
14 12
15include /etc/firejail/disable-common.inc 13include /etc/firejail/disable-common.inc
16include /etc/firejail/disable-programs.inc
17include /etc/firejail/disable-devel.inc 14include /etc/firejail/disable-devel.inc
18 15include /etc/firejail/disable-programs.inc
19#caps.drop all
20netfilter
21#nonewprivs
22#noroot
23#protocol unix,inet,inet6,netlink
24#seccomp
25
26#disable-mnt
27
28whitelist ${DOWNLOADS}
29 16
30mkdir ~/.config/brave 17mkdir ~/.config/brave
31whitelist ~/.config/brave
32mkdir ~/.pki 18mkdir ~/.pki
33whitelist ~/.pki 19whitelist ${DOWNLOADS}
34
35# lastpass, keepass
36# for keepass we additionally need to whitelist our .kdbx password database
37whitelist ~/.keepass
38whitelist ~/.config/keepass
39whitelist ~/.config/KeePass 20whitelist ~/.config/KeePass
40whitelist ~/.lastpass 21whitelist ~/.config/brave
22whitelist ~/.config/keepass
41whitelist ~/.config/lastpass 23whitelist ~/.config/lastpass
42 24whitelist ~/.keepass
25whitelist ~/.lastpass
26whitelist ~/.pki
43include /etc/firejail/whitelist-common.inc 27include /etc/firejail/whitelist-common.inc
28
29# caps.drop all
30netfilter
31# nonewprivs
32# noroot
33# protocol unix,inet,inet6,netlink
34# seccomp
35
36# disable-mnt