aboutsummaryrefslogtreecommitdiffstats
path: root/etc/profile-a-l/geki3.profile
diff options
context:
space:
mode:
Diffstat (limited to 'etc/profile-a-l/geki3.profile')
-rw-r--r--etc/profile-a-l/geki3.profile49
1 files changed, 49 insertions, 0 deletions
diff --git a/etc/profile-a-l/geki3.profile b/etc/profile-a-l/geki3.profile
new file mode 100644
index 000000000..de2167724
--- /dev/null
+++ b/etc/profile-a-l/geki3.profile
@@ -0,0 +1,49 @@
1# Firejail profile for geki3
2# Persistent local customizations
3include geki3.local
4# Persistent global definitions
5include globals.local
6
7include disable-common.inc
8include disable-devel.inc
9include disable-exec.inc
10include disable-interpreters.inc
11include disable-programs.inc
12include disable-shell.inc
13include disable-xdg.inc
14
15include whitelist-run-common.inc
16include whitelist-runuser-common.inc
17whitelist /usr/share/games/geki3
18include whitelist-usr-share-common.inc
19writable-var # game scores stored under /var/games
20include whitelist-var-common.inc
21
22apparmor
23caps.drop all
24ipc-namespace
25net none
26netfilter
27nodvd
28noinput
29nonewprivs
30noroot
31notv
32nou2f
33novideo
34protocol unix
35seccomp
36tracelog
37
38disable-mnt
39private
40private-bin geki3
41private-dev
42private-etc @x11,@sound,@games
43private-tmp
44
45dbus-user none
46dbus-system none
47
48memory-deny-write-execute
49restrict-namespaces