aboutsummaryrefslogtreecommitdiffstats
path: root/etc
diff options
context:
space:
mode:
Diffstat (limited to 'etc')
-rw-r--r--etc/disable-common.inc3
-rw-r--r--etc/firejail-default3
2 files changed, 6 insertions, 0 deletions
diff --git a/etc/disable-common.inc b/etc/disable-common.inc
index 96957eeaf..b2837b443 100644
--- a/etc/disable-common.inc
+++ b/etc/disable-common.inc
@@ -315,6 +315,7 @@ blacklist ${HOME}/.config/keybase
315blacklist ${HOME}/.davfs2/secrets 315blacklist ${HOME}/.davfs2/secrets
316blacklist ${HOME}/.ecryptfs 316blacklist ${HOME}/.ecryptfs
317blacklist ${HOME}/.fetchmailrc 317blacklist ${HOME}/.fetchmailrc
318blacklist ${HOME}/.fscrypt
318blacklist ${HOME}/.git-credential-cache 319blacklist ${HOME}/.git-credential-cache
319blacklist ${HOME}/.git-credentials 320blacklist ${HOME}/.git-credentials
320blacklist ${HOME}/.gnome2/keyrings 321blacklist ${HOME}/.gnome2/keyrings
@@ -335,6 +336,7 @@ blacklist ${HOME}/.local/share/pki
335blacklist ${HOME}/.smbcredentials 336blacklist ${HOME}/.smbcredentials
336blacklist ${HOME}/.ssh 337blacklist ${HOME}/.ssh
337blacklist ${HOME}/.vaults 338blacklist ${HOME}/.vaults
339blacklist /.fscrypt
338blacklist /etc/davfs2/secrets 340blacklist /etc/davfs2/secrets
339blacklist /etc/group+ 341blacklist /etc/group+
340blacklist /etc/group- 342blacklist /etc/group-
@@ -348,6 +350,7 @@ blacklist /etc/shadow+
348blacklist /etc/shadow- 350blacklist /etc/shadow-
349blacklist /etc/ssh 351blacklist /etc/ssh
350blacklist /home/.ecryptfs 352blacklist /home/.ecryptfs
353blacklist /home/.fscrypt
351blacklist /var/backup 354blacklist /var/backup
352 355
353# cloud provider configuration 356# cloud provider configuration
diff --git a/etc/firejail-default b/etc/firejail-default
index e7831e145..56fce654c 100644
--- a/etc/firejail-default
+++ b/etc/firejail-default
@@ -97,6 +97,9 @@ deny /proc/@{PID}/oom_score_adj w,
97# Common backup directory 97# Common backup directory
98deny /**/.snapshots/ rwx, 98deny /**/.snapshots/ rwx,
99 99
100# fscrypt
101deny /**/.fscrypt/ rwx,
102
100########## 103##########
101# Allow all networking functionality, and control it from Firejail. 104# Allow all networking functionality, and control it from Firejail.
102########## 105##########