aboutsummaryrefslogtreecommitdiffstats
path: root/etc/profile-a-l/geekbench.profile
diff options
context:
space:
mode:
Diffstat (limited to 'etc/profile-a-l/geekbench.profile')
-rw-r--r--etc/profile-a-l/geekbench.profile55
1 files changed, 55 insertions, 0 deletions
diff --git a/etc/profile-a-l/geekbench.profile b/etc/profile-a-l/geekbench.profile
new file mode 100644
index 000000000..e06a9afad
--- /dev/null
+++ b/etc/profile-a-l/geekbench.profile
@@ -0,0 +1,55 @@
1# Firejail profile for geekbench
2# Description: A cross-platform benchmark that measures processor and memory performance
3# This file is overwritten after every install/update
4# Persistent local customizations
5include geekbench.local
6# Persistent global definitions
7include globals.local
8
9include disable-common.inc
10include disable-devel.inc
11include disable-exec.inc
12include disable-interpreters.inc
13include disable-passwdmgr.inc
14include disable-programs.inc
15include disable-xdg.inc
16
17include whitelist-common.inc
18include whitelist-usr-share-common.inc
19include whitelist-var-common.inc
20
21apparmor
22caps.drop all
23hostname geekbench
24ipc-namespace
25machine-id
26netfilter
27no3d
28nodvd
29nogroups
30nonewprivs
31noroot
32nosound
33notv
34nou2f
35novideo
36protocol unix,inet,inet6
37seccomp
38shell none
39tracelog
40
41disable-mnt
42private-bin bash,geekbenc*,sh
43private-cache
44private-dev
45private-etc alternatives,group,lsb-release,passwd
46private-lib gcc/*/*/libstdc++.so.*
47private-opt none
48private-tmp
49
50dbus-user none
51dbus-system none
52
53#memory-deny-write-execute - breaks on Arch (see issue #1803)
54
55read-only ${HOME}