From c729b03cff52f8535644168279eb49f529b9069f Mon Sep 17 00:00:00 2001 From: glitsj16 Date: Wed, 7 Feb 2024 23:50:24 +0000 Subject: gnome-keyring: harden and remove quiet --- etc/profile-a-l/gnome-keyring.profile | 6 +++++- 1 file changed, 5 insertions(+), 1 deletion(-) diff --git a/etc/profile-a-l/gnome-keyring.profile b/etc/profile-a-l/gnome-keyring.profile index aa0a7f4cc..7d6475d98 100644 --- a/etc/profile-a-l/gnome-keyring.profile +++ b/etc/profile-a-l/gnome-keyring.profile @@ -1,7 +1,6 @@ # Firejail profile for gnome-keyring # Description: Stores passwords and encryption keys # This file is overwritten after every install/update -quiet # Persistent local customizations include gnome-keyring.local # Persistent global definitions @@ -9,11 +8,15 @@ include globals.local noblacklist ${HOME}/.gnupg +blacklist /tmp/.X11-unix +blacklist ${RUNUSER}/wayland-* + include disable-common.inc include disable-devel.inc include disable-exec.inc include disable-interpreters.inc include disable-programs.inc +#include disable-X11.inc # x11 none include disable-xdg.inc mkdir ${HOME}/.gnupg @@ -47,6 +50,7 @@ protocol unix,inet,inet6 seccomp seccomp.block-secondary tracelog +x11 none disable-mnt #private-bin gnome-keyrin*,secret-tool -- cgit v1.2.3-70-g09d2