aboutsummaryrefslogtreecommitdiffstats
path: root/etc/profile-a-l/dnsmasq.profile
diff options
context:
space:
mode:
Diffstat (limited to 'etc/profile-a-l/dnsmasq.profile')
-rw-r--r--etc/profile-a-l/dnsmasq.profile37
1 files changed, 37 insertions, 0 deletions
diff --git a/etc/profile-a-l/dnsmasq.profile b/etc/profile-a-l/dnsmasq.profile
new file mode 100644
index 000000000..6db71bd49
--- /dev/null
+++ b/etc/profile-a-l/dnsmasq.profile
@@ -0,0 +1,37 @@
1# Firejail profile for dnsmasq
2# Description: Small caching DNS proxy and DHCP/TFTP server
3# This file is overwritten after every install/update
4quiet
5# Persistent local customizations
6include dnsmasq.local
7# Persistent global definitions
8include globals.local
9
10noblacklist /sbin
11noblacklist /usr/sbin
12
13blacklist /tmp/.X11-unix
14blacklist ${RUNUSER}/wayland-*
15
16include disable-common.inc
17include disable-devel.inc
18include disable-interpreters.inc
19include disable-passwdmgr.inc
20include disable-programs.inc
21include disable-xdg.inc
22
23caps.keep net_admin,net_bind_service,net_raw,setgid,setuid
24no3d
25nodvd
26nonewprivs
27nosound
28notv
29nou2f
30novideo
31protocol unix,inet,inet6,netlink
32seccomp
33
34disable-mnt
35private
36private-cache
37private-dev