aboutsummaryrefslogtreecommitdiffstats
path: root/etc/gnome-passwordsafe.profile
diff options
context:
space:
mode:
Diffstat (limited to 'etc/gnome-passwordsafe.profile')
-rw-r--r--etc/gnome-passwordsafe.profile56
1 files changed, 56 insertions, 0 deletions
diff --git a/etc/gnome-passwordsafe.profile b/etc/gnome-passwordsafe.profile
new file mode 100644
index 000000000..685a5cc3f
--- /dev/null
+++ b/etc/gnome-passwordsafe.profile
@@ -0,0 +1,56 @@
1# Firejail profile for gnome-passwordsafe
2# Description: Password manager for GNOME
3# This file is overwritten after every install/update
4# Persistent local customizations
5include gnome-passwordsafe.local
6# Persistent global definitions
7include globals.local
8
9noblacklist ${DOCUMENTS}
10noblacklist ${HOME}/*.kdb
11noblacklist ${HOME}/*.kdbx
12
13# Allow python (blacklisted by disable-interpreters.inc)
14include allow-python3.inc
15
16include disable-common.inc
17include disable-devel.inc
18include disable-exec.inc
19include disable-interpreters.inc
20include disable-passwdmgr.inc
21include disable-programs.inc
22include disable-xdg.inc
23
24whitelist ${RUNUSER}/bus
25whitelist ${RUNUSER}/wayland-?
26whitelist ${RUNUSER}/gdm/Xauthority
27
28whitelist /usr/share/cracklib
29whitelist /usr/share/passwordsafe
30include whitelist-usr-share-common.inc
31include whitelist-var-common.inc
32
33apparmor
34caps.drop all
35machine-id
36net none
37no3d
38nodvd
39nogroups
40nonewprivs
41noroot
42nosound
43notv
44nou2f
45novideo
46protocol unix
47seccomp
48shell none
49tracelog
50
51disable-mnt
52private-bin gnome-passwordsafe,python3*
53private-cache
54private-dev
55private-etc dconf,fonts,gtk-3.0,passwd
56private-tmp