summaryrefslogtreecommitdiffstats
path: root/etc
diff options
context:
space:
mode:
Diffstat (limited to 'etc')
-rw-r--r--etc/atril.profile3
-rw-r--r--etc/audacious.profile3
-rw-r--r--etc/cherrytree.profile2
-rw-r--r--etc/clementine.profile2
-rw-r--r--etc/deadbeef.profile2
-rw-r--r--etc/deluge.profile4
-rw-r--r--etc/dropbox.profile3
-rw-r--r--etc/empathy.profile3
-rw-r--r--etc/evince.profile3
-rw-r--r--etc/fbreader.profile4
-rw-r--r--etc/filezilla.profile6
-rw-r--r--etc/gnome-mplayer.profile2
-rw-r--r--etc/kmail.profile5
-rw-r--r--etc/pidgin.profile3
-rw-r--r--etc/qbittorrent.profile4
-rw-r--r--etc/quassel.profile3
-rw-r--r--etc/rhythmbox.profile3
-rw-r--r--etc/ssh.profile4
-rw-r--r--etc/totem.profile2
-rw-r--r--etc/transmission-gtk.profile6
-rw-r--r--etc/transmission-qt.profile4
-rw-r--r--etc/vlc.profile3
-rw-r--r--etc/wine.profile1
-rw-r--r--etc/xchat.profile3
24 files changed, 8 insertions, 70 deletions
diff --git a/etc/atril.profile b/etc/atril.profile
index f142f50bc..e078c1d20 100644
--- a/etc/atril.profile
+++ b/etc/atril.profile
@@ -4,12 +4,9 @@ include /etc/firejail/disable-programs.inc
4include /etc/firejail/disable-devel.inc 4include /etc/firejail/disable-devel.inc
5include /etc/firejail/disable-passwdmgr.inc 5include /etc/firejail/disable-passwdmgr.inc
6 6
7blacklist ${HOME}/.wine
8
9caps.drop all 7caps.drop all
10seccomp 8seccomp
11protocol unix,inet,inet6 9protocol unix,inet,inet6
12netfilter 10netfilter
13noroot 11noroot
14tracelog 12tracelog
15
diff --git a/etc/audacious.profile b/etc/audacious.profile
index 0c79d02ac..290faa260 100644
--- a/etc/audacious.profile
+++ b/etc/audacious.profile
@@ -4,10 +4,7 @@ include /etc/firejail/disable-programs.inc
4include /etc/firejail/disable-devel.inc 4include /etc/firejail/disable-devel.inc
5include /etc/firejail/disable-passwdmgr.inc 5include /etc/firejail/disable-passwdmgr.inc
6 6
7blacklist ${HOME}/.wine
8
9caps.drop all 7caps.drop all
10seccomp 8seccomp
11protocol unix,inet,inet6 9protocol unix,inet,inet6
12noroot 10noroot
13
diff --git a/etc/cherrytree.profile b/etc/cherrytree.profile
index 3cc384b37..7bcc61e98 100644
--- a/etc/cherrytree.profile
+++ b/etc/cherrytree.profile
@@ -4,8 +4,6 @@ include /etc/firejail/disable-programs.inc
4include /etc/firejail/disable-devel.inc 4include /etc/firejail/disable-devel.inc
5include /etc/firejail/disable-passwdmgr.inc 5include /etc/firejail/disable-passwdmgr.inc
6 6
7blacklist ${HOME}/.wine
8
9whitelist ${HOME}/cherrytree 7whitelist ${HOME}/cherrytree
10mkdir ~/.config 8mkdir ~/.config
11mkdir ~/.config/cherrytree 9mkdir ~/.config/cherrytree
diff --git a/etc/clementine.profile b/etc/clementine.profile
index a02e05f9c..c6271e6e3 100644
--- a/etc/clementine.profile
+++ b/etc/clementine.profile
@@ -4,8 +4,6 @@ include /etc/firejail/disable-programs.inc
4include /etc/firejail/disable-devel.inc 4include /etc/firejail/disable-devel.inc
5include /etc/firejail/disable-passwdmgr.inc 5include /etc/firejail/disable-passwdmgr.inc
6 6
7blacklist ${HOME}/.wine
8
9caps.drop all 7caps.drop all
10seccomp 8seccomp
11protocol unix,inet,inet6 9protocol unix,inet,inet6
diff --git a/etc/deadbeef.profile b/etc/deadbeef.profile
index ddce64d62..2810e5323 100644
--- a/etc/deadbeef.profile
+++ b/etc/deadbeef.profile
@@ -6,8 +6,6 @@ include /etc/firejail/disable-programs.inc
6include /etc/firejail/disable-devel.inc 6include /etc/firejail/disable-devel.inc
7include /etc/firejail/disable-passwdmgr.inc 7include /etc/firejail/disable-passwdmgr.inc
8 8
9blacklist ${HOME}/.wine
10
11caps.drop all 9caps.drop all
12seccomp 10seccomp
13protocol unix,inet,inet6 11protocol unix,inet,inet6
diff --git a/etc/deluge.profile b/etc/deluge.profile
index 9b2c65656..d8ffc8ec5 100644
--- a/etc/deluge.profile
+++ b/etc/deluge.profile
@@ -4,13 +4,9 @@ include /etc/firejail/disable-programs.inc
4include /etc/firejail/disable-devel.inc 4include /etc/firejail/disable-devel.inc
5include /etc/firejail/disable-passwdmgr.inc 5include /etc/firejail/disable-passwdmgr.inc
6 6
7blacklist ${HOME}/.wine
8
9caps.drop all 7caps.drop all
10seccomp 8seccomp
11protocol unix,inet,inet6 9protocol unix,inet,inet6
12netfilter 10netfilter
13noroot 11noroot
14nosound 12nosound
15
16
diff --git a/etc/dropbox.profile b/etc/dropbox.profile
index ea0dc1fcb..a0a944dce 100644
--- a/etc/dropbox.profile
+++ b/etc/dropbox.profile
@@ -3,10 +3,7 @@ include /etc/firejail/disable-common.inc
3include /etc/firejail/disable-programs.inc 3include /etc/firejail/disable-programs.inc
4include /etc/firejail/disable-passwdmgr.inc 4include /etc/firejail/disable-passwdmgr.inc
5 5
6blacklist ${HOME}/.wine
7
8caps 6caps
9seccomp 7seccomp
10protocol unix,inet,inet6 8protocol unix,inet,inet6
11noroot 9noroot
12
diff --git a/etc/empathy.profile b/etc/empathy.profile
index 37277e3d1..789bdda08 100644
--- a/etc/empathy.profile
+++ b/etc/empathy.profile
@@ -3,10 +3,7 @@ include /etc/firejail/disable-common.inc
3include /etc/firejail/disable-programs.inc 3include /etc/firejail/disable-programs.inc
4include /etc/firejail/disable-devel.inc 4include /etc/firejail/disable-devel.inc
5 5
6blacklist ${HOME}/.wine
7
8caps.drop all 6caps.drop all
9seccomp 7seccomp
10protocol unix,inet,inet6 8protocol unix,inet,inet6
11netfilter 9netfilter
12
diff --git a/etc/evince.profile b/etc/evince.profile
index 693593713..c390dcaf3 100644
--- a/etc/evince.profile
+++ b/etc/evince.profile
@@ -4,11 +4,8 @@ include /etc/firejail/disable-programs.inc
4include /etc/firejail/disable-devel.inc 4include /etc/firejail/disable-devel.inc
5include /etc/firejail/disable-passwdmgr.inc 5include /etc/firejail/disable-passwdmgr.inc
6 6
7blacklist ${HOME}/.wine
8
9caps.drop all 7caps.drop all
10seccomp 8seccomp
11protocol unix,inet,inet6 9protocol unix,inet,inet6
12noroot 10noroot
13nosound 11nosound
14
diff --git a/etc/fbreader.profile b/etc/fbreader.profile
index c45acc901..cfbae1c74 100644
--- a/etc/fbreader.profile
+++ b/etc/fbreader.profile
@@ -1,16 +1,14 @@
1# fbreader ebook reader profile 1# fbreader ebook reader profile
2noblacklist ${HOME}/.FBReader 2noblacklist ${HOME}/.FBReader
3
3include /etc/firejail/disable-common.inc 4include /etc/firejail/disable-common.inc
4include /etc/firejail/disable-programs.inc 5include /etc/firejail/disable-programs.inc
5include /etc/firejail/disable-devel.inc 6include /etc/firejail/disable-devel.inc
6include /etc/firejail/disable-passwdmgr.inc 7include /etc/firejail/disable-passwdmgr.inc
7 8
8blacklist ${HOME}/.wine
9
10caps.drop all 9caps.drop all
11seccomp 10seccomp
12protocol unix,inet,inet6 11protocol unix,inet,inet6
13netfilter 12netfilter
14noroot 13noroot
15nosound 14nosound
16
diff --git a/etc/filezilla.profile b/etc/filezilla.profile
index dc677542f..8542de284 100644
--- a/etc/filezilla.profile
+++ b/etc/filezilla.profile
@@ -1,18 +1,14 @@
1# FileZilla ftp profile 1# FileZilla ftp profile
2noblacklist ${HOME}/.filezilla 2noblacklist ${HOME}/.filezilla
3noblacklist ${HOME}/.config/filezilla 3noblacklist ${HOME}/.config/filezilla
4
4include /etc/firejail/disable-common.inc 5include /etc/firejail/disable-common.inc
5include /etc/firejail/disable-programs.inc 6include /etc/firejail/disable-programs.inc
6include /etc/firejail/disable-devel.inc 7include /etc/firejail/disable-devel.inc
7 8
8blacklist ${HOME}/.wine
9
10caps.drop all 9caps.drop all
11seccomp 10seccomp
12protocol unix,inet,inet6 11protocol unix,inet,inet6
13noroot 12noroot
14netfilter 13netfilter
15nosound 14nosound
16
17
18
diff --git a/etc/gnome-mplayer.profile b/etc/gnome-mplayer.profile
index a96b19ec3..ec3698ac8 100644
--- a/etc/gnome-mplayer.profile
+++ b/etc/gnome-mplayer.profile
@@ -4,8 +4,6 @@ include /etc/firejail/disable-programs.inc
4include /etc/firejail/disable-devel.inc 4include /etc/firejail/disable-devel.inc
5include /etc/firejail/disable-passwdmgr.inc 5include /etc/firejail/disable-passwdmgr.inc
6 6
7blacklist ${HOME}/.wine
8
9caps.drop all 7caps.drop all
10seccomp 8seccomp
11protocol unix,inet,inet6 9protocol unix,inet,inet6
diff --git a/etc/kmail.profile b/etc/kmail.profile
index 67a7b4eb1..a7079661b 100644
--- a/etc/kmail.profile
+++ b/etc/kmail.profile
@@ -1,17 +1,14 @@
1# kmail profile 1# kmail profile
2noblacklist ${HOME}/.gnupg 2noblacklist ${HOME}/.gnupg
3
3include /etc/firejail/disable-common.inc 4include /etc/firejail/disable-common.inc
4include /etc/firejail/disable-programs.inc 5include /etc/firejail/disable-programs.inc
5include /etc/firejail/disable-devel.inc 6include /etc/firejail/disable-devel.inc
6include /etc/firejail/disable-passwdmgr.inc 7include /etc/firejail/disable-passwdmgr.inc
7 8
8blacklist ${HOME}/.wine
9
10caps.drop all 9caps.drop all
11seccomp 10seccomp
12protocol unix,inet,inet6,netlink 11protocol unix,inet,inet6,netlink
13netfilter 12netfilter
14noroot 13noroot
15tracelog 14tracelog
16
17
diff --git a/etc/pidgin.profile b/etc/pidgin.profile
index ea5d82103..fd497f082 100644
--- a/etc/pidgin.profile
+++ b/etc/pidgin.profile
@@ -1,11 +1,10 @@
1# Pidgin profile 1# Pidgin profile
2noblacklist ${HOME}/.purple 2noblacklist ${HOME}/.purple
3
3include /etc/firejail/disable-common.inc 4include /etc/firejail/disable-common.inc
4include /etc/firejail/disable-programs.inc 5include /etc/firejail/disable-programs.inc
5include /etc/firejail/disable-devel.inc 6include /etc/firejail/disable-devel.inc
6 7
7blacklist ${HOME}/.wine
8
9caps.drop all 8caps.drop all
10seccomp 9seccomp
11protocol unix,inet,inet6 10protocol unix,inet,inet6
diff --git a/etc/qbittorrent.profile b/etc/qbittorrent.profile
index 121d08a13..8bdc745fb 100644
--- a/etc/qbittorrent.profile
+++ b/etc/qbittorrent.profile
@@ -4,13 +4,9 @@ include /etc/firejail/disable-programs.inc
4include /etc/firejail/disable-devel.inc 4include /etc/firejail/disable-devel.inc
5include /etc/firejail/disable-passwdmgr.inc 5include /etc/firejail/disable-passwdmgr.inc
6 6
7blacklist ${HOME}/.wine
8
9caps.drop all 7caps.drop all
10seccomp 8seccomp
11protocol unix,inet,inet6 9protocol unix,inet,inet6
12netfilter 10netfilter
13noroot 11noroot
14nosound 12nosound
15
16
diff --git a/etc/quassel.profile b/etc/quassel.profile
index 1fba23784..72004da7f 100644
--- a/etc/quassel.profile
+++ b/etc/quassel.profile
@@ -3,11 +3,8 @@ include /etc/firejail/disable-common.inc
3include /etc/firejail/disable-programs.inc 3include /etc/firejail/disable-programs.inc
4include /etc/firejail/disable-devel.inc 4include /etc/firejail/disable-devel.inc
5 5
6blacklist ${HOME}/.wine
7
8caps.drop all 6caps.drop all
9seccomp 7seccomp
10protocol unix,inet,inet6 8protocol unix,inet,inet6
11noroot 9noroot
12netfilter 10netfilter
13
diff --git a/etc/rhythmbox.profile b/etc/rhythmbox.profile
index a3204c5f9..782cd3832 100644
--- a/etc/rhythmbox.profile
+++ b/etc/rhythmbox.profile
@@ -4,11 +4,8 @@ include /etc/firejail/disable-programs.inc
4include /etc/firejail/disable-devel.inc 4include /etc/firejail/disable-devel.inc
5include /etc/firejail/disable-passwdmgr.inc 5include /etc/firejail/disable-passwdmgr.inc
6 6
7blacklist ${HOME}/.wine
8
9caps.drop all 7caps.drop all
10seccomp 8seccomp
11protocol unix,inet,inet6 9protocol unix,inet,inet6
12noroot 10noroot
13netfilter 11netfilter
14
diff --git a/etc/ssh.profile b/etc/ssh.profile
index 7e105724e..7b282bde6 100644
--- a/etc/ssh.profile
+++ b/etc/ssh.profile
@@ -1,14 +1,12 @@
1# ssh client 1# ssh client
2noblacklist ~/.ssh 2noblacklist ~/.ssh
3
3include /etc/firejail/disable-common.inc 4include /etc/firejail/disable-common.inc
4include /etc/firejail/disable-programs.inc 5include /etc/firejail/disable-programs.inc
5include /etc/firejail/disable-passwdmgr.inc 6include /etc/firejail/disable-passwdmgr.inc
6 7
7blacklist ${HOME}/.wine
8
9caps.drop all 8caps.drop all
10seccomp 9seccomp
11protocol unix,inet,inet6 10protocol unix,inet,inet6
12netfilter 11netfilter
13noroot 12noroot
14
diff --git a/etc/totem.profile b/etc/totem.profile
index 5eeeb4402..4d87cbb85 100644
--- a/etc/totem.profile
+++ b/etc/totem.profile
@@ -4,8 +4,6 @@ include /etc/firejail/disable-programs.inc
4include /etc/firejail/disable-devel.inc 4include /etc/firejail/disable-devel.inc
5include /etc/firejail/disable-passwdmgr.inc 5include /etc/firejail/disable-passwdmgr.inc
6 6
7blacklist ${HOME}/.wine
8
9caps.drop all 7caps.drop all
10seccomp 8seccomp
11protocol unix,inet,inet6 9protocol unix,inet,inet6
diff --git a/etc/transmission-gtk.profile b/etc/transmission-gtk.profile
index 2550ae3ed..d61d36a8c 100644
--- a/etc/transmission-gtk.profile
+++ b/etc/transmission-gtk.profile
@@ -7,8 +7,6 @@ include /etc/firejail/disable-programs.inc
7include /etc/firejail/disable-devel.inc 7include /etc/firejail/disable-devel.inc
8include /etc/firejail/disable-passwdmgr.inc 8include /etc/firejail/disable-passwdmgr.inc
9 9
10blacklist ${HOME}/.wine
11
12caps.drop all 10caps.drop all
13seccomp 11seccomp
14protocol unix,inet,inet6 12protocol unix,inet,inet6
@@ -16,7 +14,3 @@ netfilter
16noroot 14noroot
17tracelog 15tracelog
18nosound 16nosound
19
20
21
22
diff --git a/etc/transmission-qt.profile b/etc/transmission-qt.profile
index 272d76ebb..3db7a5452 100644
--- a/etc/transmission-qt.profile
+++ b/etc/transmission-qt.profile
@@ -7,8 +7,6 @@ include /etc/firejail/disable-programs.inc
7include /etc/firejail/disable-devel.inc 7include /etc/firejail/disable-devel.inc
8include /etc/firejail/disable-passwdmgr.inc 8include /etc/firejail/disable-passwdmgr.inc
9 9
10blacklist ${HOME}/.wine
11
12caps.drop all 10caps.drop all
13seccomp 11seccomp
14protocol unix,inet,inet6 12protocol unix,inet,inet6
@@ -16,5 +14,3 @@ netfilter
16noroot 14noroot
17tracelog 15tracelog
18nosound 16nosound
19
20
diff --git a/etc/vlc.profile b/etc/vlc.profile
index 0a7469339..061ae6f78 100644
--- a/etc/vlc.profile
+++ b/etc/vlc.profile
@@ -1,12 +1,11 @@
1# VLC media player profile 1# VLC media player profile
2noblacklist ${HOME}/.config/vlc 2noblacklist ${HOME}/.config/vlc
3
3include /etc/firejail/disable-common.inc 4include /etc/firejail/disable-common.inc
4include /etc/firejail/disable-programs.inc 5include /etc/firejail/disable-programs.inc
5include /etc/firejail/disable-devel.inc 6include /etc/firejail/disable-devel.inc
6include /etc/firejail/disable-passwdmgr.inc 7include /etc/firejail/disable-passwdmgr.inc
7 8
8blacklist ${HOME}/.wine
9
10caps.drop all 9caps.drop all
11seccomp 10seccomp
12protocol unix,inet,inet6 11protocol unix,inet,inet6
diff --git a/etc/wine.profile b/etc/wine.profile
index f93fa6dc2..ea6db8511 100644
--- a/etc/wine.profile
+++ b/etc/wine.profile
@@ -2,6 +2,7 @@
2noblacklist ${HOME}/.steam 2noblacklist ${HOME}/.steam
3noblacklist ${HOME}/.local/share/steam 3noblacklist ${HOME}/.local/share/steam
4noblacklist ${HOME}/.wine 4noblacklist ${HOME}/.wine
5
5include /etc/firejail/disable-common.inc 6include /etc/firejail/disable-common.inc
6include /etc/firejail/disable-programs.inc 7include /etc/firejail/disable-programs.inc
7include /etc/firejail/disable-devel.inc 8include /etc/firejail/disable-devel.inc
diff --git a/etc/xchat.profile b/etc/xchat.profile
index 7c11ba76c..fcea4245e 100644
--- a/etc/xchat.profile
+++ b/etc/xchat.profile
@@ -1,11 +1,10 @@
1# XChat IRC profile 1# XChat IRC profile
2noblacklist ${HOME}/.config/xchat 2noblacklist ${HOME}/.config/xchat
3
3include /etc/firejail/disable-common.inc 4include /etc/firejail/disable-common.inc
4include /etc/firejail/disable-programs.inc 5include /etc/firejail/disable-programs.inc
5include /etc/firejail/disable-devel.inc 6include /etc/firejail/disable-devel.inc
6 7
7blacklist ${HOME}/.wine
8
9caps.drop all 8caps.drop all
10seccomp 9seccomp
11protocol unix,inet,inet6 10protocol unix,inet,inet6