aboutsummaryrefslogtreecommitdiffstats
path: root/etc
Commit message (Collapse)AuthorAge
...
* | Alphabetize fixes for webstorm.profileLibravatar glitsj162019-02-18
| |
* | FixesLibravatar Fred-Barclay2019-02-17
| |
* | Merge upstream changesLibravatar ಚಿರಾಗ್ ನಟರಾಜ್2019-02-17
|\ \
| * | minor fixes to keepassxc, thunderbird and pluma (#2403)Libravatar Lorenzo "Palinuro" Faletra2019-02-17
| | | | | | | | | | | | | | | | | | | | | | | | | | | | | | * fix keepassxc crash when providing GLX via update-alternatives -- Fred Barclay note: "alternatives" was added to keepassx private-etc on master after this PR was opened but before it was merged. See 83ddb3e5b276613ad2be190cebf74401daebef03 Thus keepassxc profile is actually not changed by this commit, but I'm keeping this note for reference purposes * prevent thunderbird conflicts when firefox is running * add join-or-start to pluma to open multiple files in tabs
* | | Fix #2414 by providing optional relaxed include fileLibravatar ಚಿರಾಗ್ ನಟರಾಜ್2019-02-17
|/ /
* | Remove 'alternatives' from private-etc if firefox-common is includedLibravatar Fred-Barclay2019-02-17
| |
* | Fixes from review of 2415Libravatar Fred-Barclay2019-02-17
| |
* | Add alternatives to private-etc for profiles in etc/Libravatar Fred-Barclay2019-02-17
| | | | | | | | See discussion in #2399
* | Review mypaint.profileLibravatar rusty-snake2019-02-17
| |
* | Add profiles for mypaint & mypaint-ora-thumbnailerLibravatar rusty-snake2019-02-17
| |
* | Remove ipc-namespace from PR #2366 commitsLibravatar Fred-Barclay2019-02-16
| |
* | Merge branch 'master' of https://github.com/Lockdis/firejail into ↵Libravatar Fred-Barclay2019-02-16
|\ \ | |/ |/| | | lockdis_ipc_fixes
| * Update nyx.profile, crow.profileLibravatar Lockdis2019-01-24
| |
| * add crowLibravatar Lockdis2019-01-24
| |
| * add nyx, fix g earth proLibravatar Lockdis2019-01-24
| |
* | Delete snap.profileLibravatar glitsj162019-02-14
| |
* | Retire snap.profileLibravatar glitsj162019-02-14
| |
* | Add snap blacklist items to disable-common.incLibravatar glitsj162019-02-13
| |
* | Refactor snap.profileLibravatar glitsj162019-02-13
| |
* | Fix snap.profile descriptionLibravatar glitsj162019-02-10
| |
* | changes fixing keepassxc auto-typeLibravatar veloute2019-02-09
| |
* | Add netlink to QMediathekViewLibravatar glitsj162019-02-08
| |
* | small changesLibravatar Tad2019-02-07
| | | | | | | | | | | | - merges - klavaro nitpick - vscodium alias for code, from ParrotSec downstream fork
* | Review klavaro.profileLibravatar rusty-snake2019-02-06
| |
* | Add a profile for klavaroLibravatar rusty-snake2019-02-06
| |
* | profiles: grant zoom access to its configurationLibravatar Patrik Flykt2019-02-05
| | | | | | | | https://bugs.debian.org/921454
* | Update firejail-localLibravatar glitsj162019-02-05
| |
* | firejail.config fixesLibravatar smitsohu2019-02-04
| | | | | | | | always print a warning, treat join-or-start like join
* | Add '$HOME/.local/share/pki' to blacklistLibravatar Vincent432019-02-03
| | | | | | | | | | Since nss 3.42, '$HOME/.local/share/pki' is supported dir for storing certs https://hg.mozilla.org/projects/nss/rev/da45424cb9a0b4d8e45e5040e2e3b574d994e254
* | remove noexec home from chromium-based browsersLibravatar netblue302019-02-02
| |
* | Temporary fix for noexec ${HOME} breakageLibravatar Tad2019-02-02
| |
* | Add a missing path to vivaldi profile, partial fix for #2383Libravatar Tad2019-02-01
| |
* | Merge pull request #2384 from carloabelli/mprisLibravatar Vincent432019-02-01
|\ \ | | | | | | remove nodbus from MPRIS client profiles
| * | remove nodbus from MPRIS client profilesLibravatar Carlo Abelli2019-02-01
| | | | | | | | | | | | | | | | | | | | | MPRIS is a D-Bus interface for controlling media players. The nodbus option prevents these players from being controlled through MPRIS. It seems that most of the other media players did not have the nodbus option or it was already commented out.
* | | --name reworkLibravatar netblue302019-02-01
|/ /
* | Merge pull request #2372 from rusty-snake/additional-blacklistingLibravatar SkewedZeppelin2019-01-30
|\ \ | | | | | | additional blacklisting
| * | Update some IDE profilesLibravatar rusty-snake2019-01-29
| | |
| * | Update wget.profileLibravatar rusty-snake2019-01-27
| | |
| * | additional blacklistingLibravatar rusty-snake2019-01-27
| | |
* | | pybitmessage.profile: remove memory-deny-write-executeLibravatar Vincent432019-01-30
| | | | | | | | | On some systems it causes app to crash on startup, see https://github.com/netblue30/firejail/issues/2379
* | | alphabetizeLibravatar smitsohu2019-01-30
| | |
* | | misc profile hardening (xdg blacklist, private-cache, netfilter)Libravatar smitsohu2019-01-30
| | |
* | | Fixup qtox profile, closes #2374Libravatar Tad2019-01-28
| | |
* | | Fixup cliqz profile, closes #2377Libravatar philotux2019-01-28
| | |
* | | enable/disable cgroup in firejail.configLibravatar netblue302019-01-27
| | |
* | | Merge pull request #2373 from rusty-snake/fix_gnome-mapsLibravatar Fred Barclay2019-01-27
|\ \ \ | | | | | | | | Fix gnome-maps
| * | | Fix gnome-mapsLibravatar rusty-snake2019-01-27
| |/ /
* / / Allow processes confined with AppArmor to obtain some process informationLibravatar Reiner Herrmann2019-01-27
|/ / | | | | | | | | | | | | | | 'firejail --apparmor chromium' logged a huge amount of apparmor denials, because it wants to use read/readby permissions. Allow those accesses, but keep full tracing disabled by default. See also: https://bugs.debian.org/912587 and apparmor.d(5)
* / kodi.profile: switch back to default seccomp filterLibravatar Vincent432019-01-24
|/ | | As mincore syscall was dropped from default list we can use it again.
* fix skypeforlinuxLibravatar netblue302019-01-23
|