diff options
Diffstat (limited to 'etc')
-rw-r--r-- | etc/atom-beta.profile | 17 | ||||
-rw-r--r-- | etc/disable-programs.inc | 2 | ||||
-rw-r--r-- | etc/pix.profile | 2 |
3 files changed, 20 insertions, 1 deletions
diff --git a/etc/atom-beta.profile b/etc/atom-beta.profile new file mode 100644 index 000000000..e2c3000c9 --- /dev/null +++ b/etc/atom-beta.profile | |||
@@ -0,0 +1,17 @@ | |||
1 | # Firjail profile for Atom Beta. | ||
2 | noblacklist ~/.atom | ||
3 | noblacklist ~/.config/Atom | ||
4 | |||
5 | include /etc/firejail/disable-common.inc | ||
6 | include /etc/firejail/disable-programs.inc | ||
7 | include /etc/firejail/disable-passwdmgr.inc | ||
8 | |||
9 | caps.drop all | ||
10 | netfilter | ||
11 | nonewprivs | ||
12 | nogroups | ||
13 | noroot | ||
14 | seccomp | ||
15 | shell none | ||
16 | |||
17 | private-dev | ||
diff --git a/etc/disable-programs.inc b/etc/disable-programs.inc index e9dd331aa..81c97ca2d 100644 --- a/etc/disable-programs.inc +++ b/etc/disable-programs.inc | |||
@@ -1,4 +1,5 @@ | |||
1 | # various programs | 1 | # various programs |
2 | blacklist ${HOME}/.Atom | ||
2 | blacklist ${HOME}/.remmina | 3 | blacklist ${HOME}/.remmina |
3 | blacklist ${HOME}/.tconn | 4 | blacklist ${HOME}/.tconn |
4 | blacklist ${HOME}/.FBReader | 5 | blacklist ${HOME}/.FBReader |
@@ -6,6 +7,7 @@ blacklist ${HOME}/.wine | |||
6 | blacklist ${HOME}/.Mathematica | 7 | blacklist ${HOME}/.Mathematica |
7 | blacklist ${HOME}/.Wolfram Research | 8 | blacklist ${HOME}/.Wolfram Research |
8 | blacklist ${HOME}/.stellarium | 9 | blacklist ${HOME}/.stellarium |
10 | blacklist ${HOME}/.config/Atom | ||
9 | blacklist ${HOME}/.config/gthumb | 11 | blacklist ${HOME}/.config/gthumb |
10 | blacklist ${HOME}/.config/mupen64plus | 12 | blacklist ${HOME}/.config/mupen64plus |
11 | blacklist ${HOME}/.config/transmission | 13 | blacklist ${HOME}/.config/transmission |
diff --git a/etc/pix.profile b/etc/pix.profile index 4e53de00b..87056e32c 100644 --- a/etc/pix.profile +++ b/etc/pix.profile | |||
@@ -1,4 +1,4 @@ | |||
1 | # gthumb profile | 1 | # Firejail profile for pix |
2 | noblacklist ${HOME}/.config/pix | 2 | noblacklist ${HOME}/.config/pix |
3 | noblacklist ${HOME}/.local/share/pix | 3 | noblacklist ${HOME}/.local/share/pix |
4 | 4 | ||