From 02d290cacf92065c34c2fe5401024798f3b2fcb9 Mon Sep 17 00:00:00 2001 From: smitsohu Date: Thu, 29 Mar 2018 16:20:49 +0200 Subject: comment nodbus where it interferes with dconf pending further discussion --- etc/engrampa.profile | 2 +- etc/eog.profile | 2 +- etc/eom.profile | 2 +- etc/file-roller.profile | 2 +- etc/gedit.profile | 2 +- etc/gimp.profile | 4 +++- etc/gnome-calculator.profile | 2 +- etc/kcalc.profile | 4 ++-- etc/pluma.profile | 2 +- etc/rhythmbox.profile | 2 +- etc/scribus.profile | 2 +- etc/totem.profile | 2 +- etc/xed.profile | 2 +- etc/xplayer.profile | 2 +- etc/xviewer.profile | 2 +- 15 files changed, 18 insertions(+), 16 deletions(-) diff --git a/etc/engrampa.profile b/etc/engrampa.profile index 1ecdbd1b8..25607d0a0 100644 --- a/etc/engrampa.profile +++ b/etc/engrampa.profile @@ -18,7 +18,7 @@ caps.drop all net none no3d # following line makes settings immutable -nodbus +# nodbus nodvd nogroups nonewprivs diff --git a/etc/eog.profile b/etc/eog.profile index 1ab78c345..cbb0dc3cf 100644 --- a/etc/eog.profile +++ b/etc/eog.profile @@ -23,7 +23,7 @@ caps.drop all net none no3d # following line makes settings immutable -nodbus +# nodbus nodvd nogroups nonewprivs diff --git a/etc/eom.profile b/etc/eom.profile index 978fa78a4..93acd7f28 100644 --- a/etc/eom.profile +++ b/etc/eom.profile @@ -23,7 +23,7 @@ caps.drop all net none no3d # following line makes settings immutable -nodbus +# nodbus nodvd nogroups nonewprivs diff --git a/etc/file-roller.profile b/etc/file-roller.profile index 83e6a9957..f21f8af85 100644 --- a/etc/file-roller.profile +++ b/etc/file-roller.profile @@ -18,7 +18,7 @@ caps.drop all net none no3d # following line makes settings immutable -nodbus +# nodbus nodvd nogroups nonewprivs diff --git a/etc/gedit.profile b/etc/gedit.profile index 5b058ae28..49d99becf 100644 --- a/etc/gedit.profile +++ b/etc/gedit.profile @@ -23,7 +23,7 @@ machine-id net none no3d # following line makes settings immutable -nodbus +# nodbus nodvd nogroups nonewprivs diff --git a/etc/gimp.profile b/etc/gimp.profile index 49df54d1f..5685eb5c1 100644 --- a/etc/gimp.profile +++ b/etc/gimp.profile @@ -13,10 +13,12 @@ include /etc/firejail/disable-programs.inc include /etc/firejail/whitelist-var-common.inc +# following line makes settings immutable apparmor caps.drop all net none -nodbus +# following line makes settings immutable +# nodbus nodvd nogroups nonewprivs diff --git a/etc/gnome-calculator.profile b/etc/gnome-calculator.profile index a4ef9cfc1..24615e828 100644 --- a/etc/gnome-calculator.profile +++ b/etc/gnome-calculator.profile @@ -20,7 +20,7 @@ caps.drop all net none no3d # following line makes settings immutable -nodbus +# nodbus nodvd nogroups nonewprivs diff --git a/etc/kcalc.profile b/etc/kcalc.profile index db10167ed..0e10dc061 100644 --- a/etc/kcalc.profile +++ b/etc/kcalc.profile @@ -22,10 +22,10 @@ include /etc/firejail/whitelist-var-common.inc apparmor caps.drop all -# net none +net none netfilter no3d -# nodbus +nodbus nodvd nogroups nonewprivs diff --git a/etc/pluma.profile b/etc/pluma.profile index a6c36f647..da9766a81 100644 --- a/etc/pluma.profile +++ b/etc/pluma.profile @@ -21,7 +21,7 @@ machine-id net none no3d # following line makes settings immutable -nodbus +# nodbus nodvd nogroups nonewprivs diff --git a/etc/rhythmbox.profile b/etc/rhythmbox.profile index 62d0f6334..f02d0363b 100644 --- a/etc/rhythmbox.profile +++ b/etc/rhythmbox.profile @@ -19,7 +19,7 @@ caps.drop all netfilter # no3d # following line makes settings immutable -nodbus +# nodbus nogroups nonewprivs noroot diff --git a/etc/scribus.profile b/etc/scribus.profile index 7325b663d..f9f585a20 100644 --- a/etc/scribus.profile +++ b/etc/scribus.profile @@ -48,5 +48,5 @@ tracelog private-dev private-tmp -# noexec ${HOME} +noexec ${HOME} noexec /tmp diff --git a/etc/totem.profile b/etc/totem.profile index f466b3ea6..0b242ab8f 100644 --- a/etc/totem.profile +++ b/etc/totem.profile @@ -20,7 +20,7 @@ apparmor caps.drop all netfilter # following line makes settings immutable -nodbus +# nodbus nogroups nonewprivs noroot diff --git a/etc/xed.profile b/etc/xed.profile index 2bc73693e..5f245f9ff 100644 --- a/etc/xed.profile +++ b/etc/xed.profile @@ -21,7 +21,7 @@ machine-id net none no3d # following line makes settings immutable -nodbus +# nodbus nodvd nogroups nonewprivs diff --git a/etc/xplayer.profile b/etc/xplayer.profile index ef1eb38e7..e0b7b4322 100644 --- a/etc/xplayer.profile +++ b/etc/xplayer.profile @@ -20,7 +20,7 @@ apparmor caps.drop all netfilter # following line makes settings immutable -nodbus +# nodbus nogroups nonewprivs noroot diff --git a/etc/xviewer.profile b/etc/xviewer.profile index 86d0b6d4a..35e9398ad 100644 --- a/etc/xviewer.profile +++ b/etc/xviewer.profile @@ -23,7 +23,7 @@ caps.drop all net none no3d # following line makes settings immutable -nodbus +# nodbus nodvd nogroups nonewprivs -- cgit v1.2.3-54-g00ecf