From a4d589c3e3220862ed8a646351804beb4866ee71 Mon Sep 17 00:00:00 2001 From: Jean Lucas Date: Sat, 28 Apr 2018 11:11:43 -0400 Subject: Add nvm to list of disabled interpreters --- etc/disable-interpreters.inc | 3 +++ 1 file changed, 3 insertions(+) diff --git a/etc/disable-interpreters.inc b/etc/disable-interpreters.inc index 5c68485aa..18120e95d 100644 --- a/etc/disable-interpreters.inc +++ b/etc/disable-interpreters.inc @@ -12,6 +12,9 @@ blacklist /usr/share/lua blacklist ${PATH}/node blacklist /usr/include/node +# nvm +blacklist ${HOME}/.nvm + # Perl blacklist ${PATH}/cpan* blacklist ${PATH}/core_perl -- cgit v1.2.3-70-g09d2 From 8719c8f53def8eb8e6ffe23ca8078e4645d829e8 Mon Sep 17 00:00:00 2001 From: Jean Lucas Date: Sat, 28 Apr 2018 10:51:56 -0400 Subject: Amend WebStorm profile - Add Android development-related paths - Don't blacklist node/nvm for e.g. Node.js-related development - Remove noexec from /tmp for e.g. same Node.js case --- etc/webstorm.profile | 9 ++++++--- 1 file changed, 6 insertions(+), 3 deletions(-) diff --git a/etc/webstorm.profile b/etc/webstorm.profile index 6da71224f..93bcb50bb 100644 --- a/etc/webstorm.profile +++ b/etc/webstorm.profile @@ -6,12 +6,17 @@ include /etc/firejail/webstorm.local include /etc/firejail/globals.local noblacklist ${HOME}/.WebStorm* +noblacklist ${HOME}/.android noblacklist ${HOME}/.gitconfig +noblacklist ${HOME}/.gradle noblacklist ${HOME}/.java noblacklist ${HOME}/.local/share/JetBrains noblacklist ${HOME}/.ssh noblacklist ${HOME}/.tooling +noblacklist ${PATH}/node +noblacklist ${HOME}/.nvm + include /etc/firejail/disable-common.inc include /etc/firejail/disable-passwdmgr.inc include /etc/firejail/disable-programs.inc @@ -31,6 +36,4 @@ seccomp shell none private-dev -# private-tmp - -noexec /tmp +private-tmp -- cgit v1.2.3-70-g09d2