aboutsummaryrefslogtreecommitdiffstats
path: root/etc/profile-a-l/alienblaster.profile
diff options
context:
space:
mode:
Diffstat (limited to 'etc/profile-a-l/alienblaster.profile')
-rw-r--r--etc/profile-a-l/alienblaster.profile55
1 files changed, 55 insertions, 0 deletions
diff --git a/etc/profile-a-l/alienblaster.profile b/etc/profile-a-l/alienblaster.profile
new file mode 100644
index 000000000..0e0478a49
--- /dev/null
+++ b/etc/profile-a-l/alienblaster.profile
@@ -0,0 +1,55 @@
1# Firejail profile for alienblaster
2# Persistent local customizations
3include alienblaster.local
4# Persistent global definitions
5include globals.local
6
7noblacklist ${HOME}/.alienblaster
8noblacklist ${HOME}/.alienblaster_highscore
9
10include disable-common.inc
11include disable-devel.inc
12include disable-exec.inc
13include disable-interpreters.inc
14include disable-programs.inc
15include disable-xdg.inc
16
17mkfile ${HOME}/.alienblaster_highscore
18whitelist ${HOME}/.alienblaster_highscore
19mkdir ${HOME}/.alienblaster
20whitelist ${HOME}/.alienblaster
21include whitelist-common.inc
22include whitelist-run-common.inc
23whitelist ${RUNUSER}/pulse
24include whitelist-runuser-common.inc
25whitelist /usr/share/games/alienblaster
26whitelist /usr/share/timidity
27include whitelist-usr-share-common.inc
28include whitelist-var-common.inc
29
30apparmor
31caps.drop all
32ipc-namespace
33netfilter
34net none
35nodvd
36noinput
37nonewprivs
38noroot
39notv
40nou2f
41novideo
42protocol unix
43seccomp
44tracelog
45
46disable-mnt
47private-dev
48private-etc @x11,@sound,@games
49private-tmp
50
51dbus-user none
52dbus-system none
53
54memory-deny-write-execute
55restrict-namespaces