aboutsummaryrefslogtreecommitdiffstats
path: root/etc/profile-m-z/zaproxy.profile
diff options
context:
space:
mode:
Diffstat (limited to 'etc/profile-m-z/zaproxy.profile')
-rw-r--r--etc/profile-m-z/zaproxy.profile47
1 files changed, 47 insertions, 0 deletions
diff --git a/etc/profile-m-z/zaproxy.profile b/etc/profile-m-z/zaproxy.profile
new file mode 100644
index 000000000..6228ff3bd
--- /dev/null
+++ b/etc/profile-m-z/zaproxy.profile
@@ -0,0 +1,47 @@
1# Firejail profile for zaproxy
2# Description: Integrated penetration testing tool for finding vulnerabilities in web applications
3# This file is overwritten after every install/update
4# Persistent local customizations
5include zaproxy.local
6# Persistent global definitions
7include globals.local
8
9noblacklist ${HOME}/.ZAP
10
11# Allow java (blacklisted by disable-devel.inc)
12include allow-java.inc
13
14include disable-common.inc
15include disable-devel.inc
16include disable-exec.inc
17include disable-interpreters.inc
18include disable-passwdmgr.inc
19include disable-programs.inc
20
21mkdir ${HOME}/.java
22mkdir ${HOME}/.ZAP
23whitelist ${HOME}/.java
24whitelist ${HOME}/.ZAP
25include whitelist-common.inc
26include whitelist-var-common.inc
27
28caps.drop all
29ipc-namespace
30netfilter
31no3d
32nodvd
33nogroups
34nonewprivs
35noroot
36nosound
37notv
38nou2f
39novideo
40protocol unix,inet,inet6
41seccomp
42shell none
43
44disable-mnt
45private-dev
46private-tmp
47