From 3db72d37537c84e86f3a32c325f27030c6fa4238 Mon Sep 17 00:00:00 2001 From: netblue30 Date: Wed, 28 Oct 2015 13:52:29 -0400 Subject: enable --protocol by default in profiles --- etc/audacious.profile | 1 + etc/clementine.profile | 1 + etc/deadbeef.profile | 1 + etc/deluge.profile | 1 + etc/dropbox.profile | 1 + etc/empathy.profile | 1 + etc/evince.profile | 1 + etc/fbreader.profile | 1 + etc/filezilla.profile | 1 + etc/firefox.profile | 1 + etc/generic.profile | 1 + etc/gnome-mplayer.profile | 1 + etc/midori.profile | 1 + etc/opera.profile | 1 - etc/pidgin.profile | 1 + etc/qbittorrent.profile | 1 + etc/quassel.profile | 1 + etc/rhythmbox.profile | 1 + etc/skype.profile | 1 + etc/spotify.profile | 1 + etc/steam.profile | 1 + etc/thunderbird.profile | 1 + etc/totem.profile | 1 + etc/transmission-gtk.profile | 1 + etc/transmission-qt.profile | 1 + etc/vlc.profile | 1 + etc/xchat.profile | 1 + test/net_mtu.exp | 2 +- 28 files changed, 27 insertions(+), 2 deletions(-) diff --git a/etc/audacious.profile b/etc/audacious.profile index a55398648..19d735c32 100644 --- a/etc/audacious.profile +++ b/etc/audacious.profile @@ -10,5 +10,6 @@ blacklist ${HOME}/.password-store blacklist ${HOME}/.wine caps.drop all seccomp +protocol unix,inet,inet6 noroot diff --git a/etc/clementine.profile b/etc/clementine.profile index 779eb902b..3cec2b1d8 100644 --- a/etc/clementine.profile +++ b/etc/clementine.profile @@ -10,4 +10,5 @@ blacklist ${HOME}/.password-store blacklist ${HOME}/.wine caps.drop all seccomp +protocol unix,inet,inet6 noroot diff --git a/etc/deadbeef.profile b/etc/deadbeef.profile index a64968a7e..3267fd83e 100644 --- a/etc/deadbeef.profile +++ b/etc/deadbeef.profile @@ -10,5 +10,6 @@ blacklist ${HOME}/.password-store blacklist ${HOME}/.wine caps.drop all seccomp +protocol unix,inet,inet6 noroot diff --git a/etc/deluge.profile b/etc/deluge.profile index 3e499bbf4..7d4fb55f5 100644 --- a/etc/deluge.profile +++ b/etc/deluge.profile @@ -10,6 +10,7 @@ blacklist ${HOME}/.password-store blacklist ${HOME}/.wine caps.drop all seccomp +protocol unix,inet,inet6 netfilter noroot diff --git a/etc/dropbox.profile b/etc/dropbox.profile index 76367e13a..dbf90e352 100644 --- a/etc/dropbox.profile +++ b/etc/dropbox.profile @@ -10,4 +10,5 @@ blacklist ${HOME}/.password-store blacklist ${HOME}/.wine caps seccomp +protocol unix,inet,inet6 noroot diff --git a/etc/empathy.profile b/etc/empathy.profile index 24ba457d9..8d54ab401 100644 --- a/etc/empathy.profile +++ b/etc/empathy.profile @@ -6,3 +6,4 @@ include /etc/firejail/disable-history.inc blacklist ${HOME}/.wine caps.drop all seccomp +protocol unix,inet,inet6 diff --git a/etc/evince.profile b/etc/evince.profile index 1dc4f2b7a..6af871bf7 100644 --- a/etc/evince.profile +++ b/etc/evince.profile @@ -10,4 +10,5 @@ blacklist ${HOME}/.password-store blacklist ${HOME}/.wine caps.drop all seccomp +protocol unix,inet,inet6 noroot diff --git a/etc/fbreader.profile b/etc/fbreader.profile index e42dc6084..46ea14807 100644 --- a/etc/fbreader.profile +++ b/etc/fbreader.profile @@ -11,6 +11,7 @@ blacklist ${HOME}/.password-store blacklist ${HOME}/.wine caps.drop all seccomp +protocol unix,inet,inet6 netfilter noroot diff --git a/etc/filezilla.profile b/etc/filezilla.profile index df89574f1..1b6684e75 100644 --- a/etc/filezilla.profile +++ b/etc/filezilla.profile @@ -8,6 +8,7 @@ include /etc/firejail/disable-history.inc blacklist ${HOME}/.wine caps.drop all seccomp +protocol unix,inet,inet6 noroot netfilter diff --git a/etc/firefox.profile b/etc/firefox.profile index d81f6a9e1..ac6536ad4 100644 --- a/etc/firefox.profile +++ b/etc/firefox.profile @@ -6,6 +6,7 @@ include /etc/firejail/disable-common.inc include /etc/firejail/disable-history.inc caps.drop all seccomp +protocol unix,inet,inet6 netfilter noroot whitelist ~/.mozilla diff --git a/etc/generic.profile b/etc/generic.profile index 18fb4ebc6..40a9b31af 100644 --- a/etc/generic.profile +++ b/etc/generic.profile @@ -11,6 +11,7 @@ blacklist ${HOME}/.keepassx blacklist ${HOME}/.password-store caps.drop all seccomp +protocol unix,inet,inet6 netfilter noroot diff --git a/etc/gnome-mplayer.profile b/etc/gnome-mplayer.profile index b3578c38c..80beb8638 100644 --- a/etc/gnome-mplayer.profile +++ b/etc/gnome-mplayer.profile @@ -10,4 +10,5 @@ blacklist ${HOME}/.password-store blacklist ${HOME}/.wine caps.drop all seccomp +protocol unix,inet,inet6 noroot diff --git a/etc/midori.profile b/etc/midori.profile index 7ce9b7151..0200c300c 100644 --- a/etc/midori.profile +++ b/etc/midori.profile @@ -6,5 +6,6 @@ include /etc/firejail/disable-common.inc include /etc/firejail/disable-history.inc caps.drop all seccomp +protocol unix,inet,inet6 netfilter diff --git a/etc/opera.profile b/etc/opera.profile index c20e6b614..d55c0aaa3 100644 --- a/etc/opera.profile +++ b/etc/opera.profile @@ -6,6 +6,5 @@ include /etc/firejail/disable-common.inc include /etc/firejail/disable-history.inc netfilter noroot -shell none diff --git a/etc/pidgin.profile b/etc/pidgin.profile index d206fa0fa..e35585087 100644 --- a/etc/pidgin.profile +++ b/etc/pidgin.profile @@ -7,4 +7,5 @@ include /etc/firejail/disable-history.inc blacklist ${HOME}/.wine caps.drop all seccomp +protocol unix,inet,inet6 noroot diff --git a/etc/qbittorrent.profile b/etc/qbittorrent.profile index d6ed092f2..41f984602 100644 --- a/etc/qbittorrent.profile +++ b/etc/qbittorrent.profile @@ -10,6 +10,7 @@ blacklist ${HOME}/.password-store blacklist ${HOME}/.wine caps.drop all seccomp +protocol unix,inet,inet6 netfilter noroot diff --git a/etc/quassel.profile b/etc/quassel.profile index 08d90df34..20ac17bcd 100644 --- a/etc/quassel.profile +++ b/etc/quassel.profile @@ -6,4 +6,5 @@ include /etc/firejail/disable-history.inc blacklist ${HOME}/.wine caps.drop all seccomp +protocol unix,inet,inet6 noroot diff --git a/etc/rhythmbox.profile b/etc/rhythmbox.profile index adfa94dbd..d7b45102a 100644 --- a/etc/rhythmbox.profile +++ b/etc/rhythmbox.profile @@ -10,4 +10,5 @@ blacklist ${HOME}/.password-store blacklist ${HOME}/.wine caps.drop all seccomp +protocol unix,inet,inet6 noroot diff --git a/etc/skype.profile b/etc/skype.profile index 865fbe43d..fc4c54771 100644 --- a/etc/skype.profile +++ b/etc/skype.profile @@ -9,3 +9,4 @@ caps.drop all netfilter noroot seccomp +protocol unix,inet,inet6 diff --git a/etc/spotify.profile b/etc/spotify.profile index 3b2360a65..71d55f067 100644 --- a/etc/spotify.profile +++ b/etc/spotify.profile @@ -15,5 +15,6 @@ whitelist ${HOME}/.config/pulse caps.drop all seccomp +protocol unix,inet,inet6 netfilter noroot diff --git a/etc/steam.profile b/etc/steam.profile index da36a50b4..feaa46c84 100644 --- a/etc/steam.profile +++ b/etc/steam.profile @@ -9,3 +9,4 @@ caps.drop all netfilter noroot seccomp +protocol unix,inet,inet6 diff --git a/etc/thunderbird.profile b/etc/thunderbird.profile index 9305d06b0..afd049eb1 100644 --- a/etc/thunderbird.profile +++ b/etc/thunderbird.profile @@ -18,6 +18,7 @@ blacklist ${HOME}/.tconn include /etc/firejail/disable-history.inc caps.drop all seccomp +protocol unix,inet,inet6 netfilter noroot diff --git a/etc/totem.profile b/etc/totem.profile index f6730ce5a..3a7a24d8c 100644 --- a/etc/totem.profile +++ b/etc/totem.profile @@ -10,4 +10,5 @@ blacklist ${HOME}/.password-store blacklist ${HOME}/.wine caps.drop all seccomp +protocol unix,inet,inet6 noroot diff --git a/etc/transmission-gtk.profile b/etc/transmission-gtk.profile index 4d9d491bd..6ef8c5490 100644 --- a/etc/transmission-gtk.profile +++ b/etc/transmission-gtk.profile @@ -10,6 +10,7 @@ blacklist ${HOME}/.password-store blacklist ${HOME}/.wine caps.drop all seccomp +protocol unix,inet,inet6 netfilter noroot diff --git a/etc/transmission-qt.profile b/etc/transmission-qt.profile index 24f761f6f..06a425a0f 100644 --- a/etc/transmission-qt.profile +++ b/etc/transmission-qt.profile @@ -10,6 +10,7 @@ blacklist ${HOME}/.password-store blacklist ${HOME}/.wine caps.drop all seccomp +protocol unix,inet,inet6 netfilter noroot diff --git a/etc/vlc.profile b/etc/vlc.profile index ef64873b8..3ac67983e 100644 --- a/etc/vlc.profile +++ b/etc/vlc.profile @@ -10,4 +10,5 @@ blacklist ${HOME}/.password-store blacklist ${HOME}/.wine caps.drop all seccomp +protocol unix,inet,inet6 noroot diff --git a/etc/xchat.profile b/etc/xchat.profile index dc7e84e12..c1cd9e205 100644 --- a/etc/xchat.profile +++ b/etc/xchat.profile @@ -6,4 +6,5 @@ include /etc/firejail/disable-history.inc blacklist ${HOME}/.wine caps.drop all seccomp +protocol unix,inet,inet6 noroot diff --git a/test/net_mtu.exp b/test/net_mtu.exp index 2940241c1..7943b2866 100755 --- a/test/net_mtu.exp +++ b/test/net_mtu.exp @@ -5,7 +5,7 @@ spawn $env(SHELL) match_max 100000 # check ip address -send -- "firejail --net=br0 --mtu=1000\r" +send -- "firejail --net=br0 --mtu=1000 --noprofile\r" expect { timeout {puts "TESTING ERROR 1\n";exit} "Child process initialized" -- cgit v1.2.3-70-g09d2