diff options
Diffstat (limited to 'etc')
-rw-r--r-- | etc/disable-programs.inc | 1 | ||||
-rw-r--r-- | etc/warzone2100.profile | 19 |
2 files changed, 20 insertions, 0 deletions
diff --git a/etc/disable-programs.inc b/etc/disable-programs.inc index 7f18aa16f..43b9cff38 100644 --- a/etc/disable-programs.inc +++ b/etc/disable-programs.inc | |||
@@ -54,6 +54,7 @@ blacklist ${HOME}/.hedgewars | |||
54 | blacklist ${HOME}/.steam | 54 | blacklist ${HOME}/.steam |
55 | blacklist ${HOME}/.config/wesnoth | 55 | blacklist ${HOME}/.config/wesnoth |
56 | blacklist ${HOME}/.config/0ad | 56 | blacklist ${HOME}/.config/0ad |
57 | blacklist ${HOME}/.warzone2100-3.1 | ||
57 | 58 | ||
58 | # Cryptocoins | 59 | # Cryptocoins |
59 | blacklist ${HOME}/.*coin | 60 | blacklist ${HOME}/.*coin |
diff --git a/etc/warzone2100.profile b/etc/warzone2100.profile new file mode 100644 index 000000000..73408ffb1 --- /dev/null +++ b/etc/warzone2100.profile | |||
@@ -0,0 +1,19 @@ | |||
1 | # Firejail profile for warzone2100 | ||
2 | # Currently supports warzone2100-3.1 | ||
3 | include /etc/firejail/disable-common.inc | ||
4 | include /etc/firejail/disable-devel.inc | ||
5 | include /etc/firejail/disable-passwdmgr.inc | ||
6 | include /etc/firejail/disable-programs.inc | ||
7 | |||
8 | # Call these options | ||
9 | caps.drop all | ||
10 | netfilter | ||
11 | noroot | ||
12 | protocol unix,inet,inet6,netlink | ||
13 | seccomp | ||
14 | tracelog | ||
15 | |||
16 | # Whitelist | ||
17 | noblacklist ~/.warzone2100-3.1 | ||
18 | mkdir ~/.warzone2100-3.1 | ||
19 | whitelist ~/.warzone2100-3.1 | ||