diff options
Diffstat (limited to 'etc/cherrytree.profile')
-rw-r--r-- | etc/cherrytree.profile | 20 |
1 files changed, 8 insertions, 12 deletions
diff --git a/etc/cherrytree.profile b/etc/cherrytree.profile index 7bcc61e98..139dec8ec 100644 --- a/etc/cherrytree.profile +++ b/etc/cherrytree.profile | |||
@@ -1,22 +1,18 @@ | |||
1 | # cherrytree note taking application | 1 | # cherrytree note taking application |
2 | noblacklist /usr/bin/python2* | ||
3 | noblacklist /usr/lib/python3* | ||
4 | noblacklist ${HOME}/.config/cherrytree | ||
2 | include /etc/firejail/disable-common.inc | 5 | include /etc/firejail/disable-common.inc |
3 | include /etc/firejail/disable-programs.inc | 6 | include /etc/firejail/disable-programs.inc |
4 | include /etc/firejail/disable-devel.inc | 7 | include /etc/firejail/disable-devel.inc |
5 | include /etc/firejail/disable-passwdmgr.inc | 8 | include /etc/firejail/disable-passwdmgr.inc |
6 | 9 | ||
7 | whitelist ${HOME}/cherrytree | ||
8 | mkdir ~/.config | ||
9 | mkdir ~/.config/cherrytree | ||
10 | whitelist ${HOME}/.config/cherrytree/ | ||
11 | mkdir ~/.local | ||
12 | mkdir ~/.local/share | ||
13 | whitelist ${HOME}/.local/share/ | ||
14 | |||
15 | caps.drop all | 10 | caps.drop all |
16 | seccomp | ||
17 | protocol unix,inet,inet6,netlink | ||
18 | netfilter | 11 | netfilter |
19 | tracelog | 12 | nogroups |
13 | nonewprivs | ||
20 | noroot | 14 | noroot |
21 | include /etc/firejail/whitelist-common.inc | ||
22 | nosound | 15 | nosound |
16 | seccomp | ||
17 | protocol unix,inet,inet6,netlink | ||
18 | tracelog | ||