aboutsummaryrefslogtreecommitdiffstats
path: root/etc/lxterminal.profile
diff options
context:
space:
mode:
Diffstat (limited to 'etc/lxterminal.profile')
-rw-r--r--etc/lxterminal.profile19
1 files changed, 19 insertions, 0 deletions
diff --git a/etc/lxterminal.profile b/etc/lxterminal.profile
new file mode 100644
index 000000000..a614a8dbf
--- /dev/null
+++ b/etc/lxterminal.profile
@@ -0,0 +1,19 @@
1# lxterminal (LXDE) profile
2
3include /etc/firejail/disable-mgmt.inc
4include /etc/firejail/disable-secret.inc
5include /etc/firejail/disable-common.inc
6blacklist ${HOME}/.pki/nssdb
7blacklist ${HOME}/.lastpass
8blacklist ${HOME}/.keepassx
9blacklist ${HOME}/.password-store
10caps.drop all
11seccomp
12protocol unix,inet,inet6
13netfilter
14
15#noroot - somehow this breaks on Debian Jessie!
16
17# lxterminal is a single-instence program
18# blacklist any existing lxterminal socket in order to force a second process instance
19blacklist /tmp/.lxterminal-socket*