aboutsummaryrefslogtreecommitdiffstats
path: root/etc/profile-a-l/gcloud.profile
diff options
context:
space:
mode:
Diffstat (limited to 'etc/profile-a-l/gcloud.profile')
-rw-r--r--etc/profile-a-l/gcloud.profile42
1 files changed, 42 insertions, 0 deletions
diff --git a/etc/profile-a-l/gcloud.profile b/etc/profile-a-l/gcloud.profile
new file mode 100644
index 000000000..46a862a21
--- /dev/null
+++ b/etc/profile-a-l/gcloud.profile
@@ -0,0 +1,42 @@
1# Firejail profile for gcloud
2# This file is overwritten after every install/update
3# Persistent local customizations
4include gcloud.local
5# Persistent global definitions
6include globals.local
7
8# noexec ${HOME} will break user-local installs of gcloud tooling
9ignore noexec ${HOME}
10
11noblacklist ${HOME}/.boto
12noblacklist ${HOME}/.config/gcloud
13noblacklist /var/run/docker.sock
14
15include disable-common.inc
16include disable-devel.inc
17include disable-exec.inc
18include disable-programs.inc
19
20apparmor
21caps.drop all
22machine-id
23netfilter
24nodvd
25# required for sudo-free docker
26#nogroups
27nonewprivs
28noroot
29notv
30nou2f
31protocol unix,inet,inet6
32seccomp
33shell none
34tracelog
35
36disable-mnt
37private-dev
38private-etc alternatives,ca-certificates,crypto-policies,hosts,ld.so.cache,localtime,nsswitch.conf,pki,resolv.conf,ssl
39private-tmp
40
41dbus-user none
42dbus-system none