aboutsummaryrefslogtreecommitdiffstats
path: root/etc/gajim.profile
diff options
context:
space:
mode:
Diffstat (limited to 'etc/gajim.profile')
-rw-r--r--etc/gajim.profile33
1 files changed, 33 insertions, 0 deletions
diff --git a/etc/gajim.profile b/etc/gajim.profile
new file mode 100644
index 000000000..04902a734
--- /dev/null
+++ b/etc/gajim.profile
@@ -0,0 +1,33 @@
1# Firejail profile for Gajim
2
3mkdir ${HOME}/.cache/gajim
4mkdir ${HOME}/.local/share/gajim
5mkdir ${HOME}/.config/gajim
6mkdir ${HOME}/Downloads
7
8# Allow the local python 2.7 site packages, in case any plugins are using these
9mkdir ${HOME}/.local/lib/python2.7/site-packages/
10whitelist ${HOME}/.local/lib/python2.7/site-packages/
11read-only ${HOME}/.local/lib/python2.7/site-packages/
12
13whitelist ${HOME}/.cache/gajim
14whitelist ${HOME}/.local/share/gajim
15whitelist ${HOME}/.config/gajim
16whitelist ${HOME}/Downloads
17
18include /etc/firejail/disable-common.inc
19include /etc/firejail/disable-passwdmgr.inc
20include /etc/firejail/disable-programs.inc
21include /etc/firejail/disable-devel.inc
22
23caps.drop all
24netfilter
25nonewprivs
26nogroups
27noroot
28protocol unix,inet,inet6
29seccomp
30shell none
31
32#private-bin python2.7 gajim
33private-dev