summaryrefslogtreecommitdiffstats
path: root/etc
diff options
context:
space:
mode:
Diffstat (limited to 'etc')
-rw-r--r--etc/XMind.profile38
-rw-r--r--etc/android-studio.profile1
-rw-r--r--etc/baloo_filemetadata_temp_extractor.profile1
-rw-r--r--etc/disable-programs.inc1
4 files changed, 40 insertions, 1 deletions
diff --git a/etc/XMind.profile b/etc/XMind.profile
new file mode 100644
index 000000000..ff6258ca2
--- /dev/null
+++ b/etc/XMind.profile
@@ -0,0 +1,38 @@
1# Firejail profile for XMind
2# This file is overwritten after every install/update
3# Persistent local customizations
4include /etc/firejail/XMind.local
5# Persistent global definitions
6include /etc/firejail/globals.local
7
8noblacklist ${HOME}/.xmind
9
10include /etc/firejail/disable-common.inc
11include /etc/firejail/disable-devel.inc
12include /etc/firejail/disable-interpreters.inc
13include /etc/firejail/disable-passwdmgr.inc
14include /etc/firejail/disable-programs.inc
15
16mkdir ${HOME}/.xmind
17whitelist ${HOME}/.xmind
18whitelist ${DOWNLOADS}
19include /etc/firejail/whitelist-common.inc
20
21caps.drop all
22netfilter
23nodvd
24nogroups
25nonewprivs
26noroot
27notv
28protocol unix,inet,inet6
29seccomp
30shell none
31
32disable-mnt
33private-bin XMind,sh,cp
34private-tmp
35private-dev
36
37noexec ${HOME}
38noexec /tmp
diff --git a/etc/android-studio.profile b/etc/android-studio.profile
index b87635ce3..5ff0b7c3a 100644
--- a/etc/android-studio.profile
+++ b/etc/android-studio.profile
@@ -32,7 +32,6 @@ protocol unix,inet,inet6
32seccomp 32seccomp
33shell none 33shell none
34 34
35private-dev
36# private-tmp 35# private-tmp
37 36
38# noexec /tmp breaks 'Android Profiler' 37# noexec /tmp breaks 'Android Profiler'
diff --git a/etc/baloo_filemetadata_temp_extractor.profile b/etc/baloo_filemetadata_temp_extractor.profile
index 027eeef82..87f2949e6 100644
--- a/etc/baloo_filemetadata_temp_extractor.profile
+++ b/etc/baloo_filemetadata_temp_extractor.profile
@@ -6,6 +6,7 @@ include /etc/firejail/baloo_filemetadata_temp_extractor.local
6# Persistent global definitions 6# Persistent global definitions
7include /etc/firejail/globals.local 7include /etc/firejail/globals.local
8 8
9ignore read-write
9read-only ${HOME} 10read-only ${HOME}
10 11
11# Redirect 12# Redirect
diff --git a/etc/disable-programs.inc b/etc/disable-programs.inc
index 87f151a9a..ea334c289 100644
--- a/etc/disable-programs.inc
+++ b/etc/disable-programs.inc
@@ -505,6 +505,7 @@ blacklist ${HOME}/.wine
505blacklist ${HOME}/.wireshark 505blacklist ${HOME}/.wireshark
506blacklist ${HOME}/.wine64 506blacklist ${HOME}/.wine64
507blacklist ${HOME}/.xiphos 507blacklist ${HOME}/.xiphos
508blacklist ${HOME}/.xmind
508blacklist ${HOME}/.xmms 509blacklist ${HOME}/.xmms
509blacklist ${HOME}/.xmr-stak 510blacklist ${HOME}/.xmr-stak
510blacklist ${HOME}/.xonotic 511blacklist ${HOME}/.xonotic