From 06f6c3ffd6c01844ad0ca5aaba1a56c1c6b63d24 Mon Sep 17 00:00:00 2001 From: glitsj16 Date: Sun, 1 Apr 2018 09:39:59 +0000 Subject: Create gnome-logs.profile New profile. A few harmless warnings do show, but nothing that doesn't also show without firejail. --- etc/gnome-logs.profile | 39 +++++++++++++++++++++++++++++++++++++++ 1 file changed, 39 insertions(+) create mode 100644 etc/gnome-logs.profile diff --git a/etc/gnome-logs.profile b/etc/gnome-logs.profile new file mode 100644 index 000000000..3c75522c0 --- /dev/null +++ b/etc/gnome-logs.profile @@ -0,0 +1,39 @@ +# Firejail profile for gnome-logs +# This file is overwritten after every install/update +# Persistent local customizations +include /etc/firejail/gnome-logs.local +# Persistent global definitions +include /etc/firejail/globals.local + +include /etc/firejail/disable-common.inc +include /etc/firejail/disable-devel.inc +include /etc/firejail/disable-passwdmgr.inc +include /etc/firejail/disable-programs.inc + +include /etc/firejail/whitelist-var-common.inc + +caps.drop all +net none +netfilter +no3d +nodbus +nodvd +nogroups +nonewprivs +noroot +nosound +notv +novideo +protocol unix +seccomp +shell none + +disable-mnt +private-bin gnome-logs +private-dev +private-etc fonts +private-lib gdk-pixbuf-2.0,gio,gvfs/libgvfscommon.so,libgconf-2.so.4,librsvg-2.so.2 +private-tmp + +noexec ${HOME} +noexec /tmp -- cgit v1.2.3-54-g00ecf