aboutsummaryrefslogtreecommitdiffstats
path: root/etc/profile-a-l/dnsmasq.profile
diff options
context:
space:
mode:
Diffstat (limited to 'etc/profile-a-l/dnsmasq.profile')
-rw-r--r--etc/profile-a-l/dnsmasq.profile9
1 files changed, 7 insertions, 2 deletions
diff --git a/etc/profile-a-l/dnsmasq.profile b/etc/profile-a-l/dnsmasq.profile
index 2db1548a4..13efd2fa8 100644
--- a/etc/profile-a-l/dnsmasq.profile
+++ b/etc/profile-a-l/dnsmasq.profile
@@ -9,9 +9,10 @@ include globals.local
9 9
10noblacklist /sbin 10noblacklist /sbin
11noblacklist /usr/sbin 11noblacklist /usr/sbin
12noblacklist /var/lib/libvirt
12 13
13blacklist /tmp/.X11-unix 14blacklist /tmp/.X11-unix
14blacklist ${RUNUSER}/wayland-* 15blacklist ${RUNUSER}
15 16
16include disable-common.inc 17include disable-common.inc
17include disable-devel.inc 18include disable-devel.inc
@@ -19,6 +20,9 @@ include disable-interpreters.inc
19include disable-programs.inc 20include disable-programs.inc
20include disable-xdg.inc 21include disable-xdg.inc
21 22
23whitelist /var/lib/libvirt/dnsmasq
24whitelist /var/run
25
22caps.keep net_admin,net_bind_service,net_raw,setgid,setuid 26caps.keep net_admin,net_bind_service,net_raw,setgid,setuid
23no3d 27no3d
24nodvd 28nodvd
@@ -33,5 +37,6 @@ seccomp
33 37
34disable-mnt 38disable-mnt
35private 39private
36private-cache
37private-dev 40private-dev
41private-tmp
42writable-var