From dbf206dcd67f506cba39bdff02824f5b65ad5934 Mon Sep 17 00:00:00 2001 From: glitsj16 Date: Wed, 27 Mar 2024 12:26:03 +0000 Subject: pkglog: hardening (x11) (#6292) --- etc/profile-m-z/pkglog.profile | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/etc/profile-m-z/pkglog.profile b/etc/profile-m-z/pkglog.profile index 799c8f607..2f200e154 100644 --- a/etc/profile-m-z/pkglog.profile +++ b/etc/profile-m-z/pkglog.profile @@ -6,6 +6,8 @@ include pkglog.local # Persistent global definitions include globals.local +blacklist ${RUNUSER} + # Allow python (blacklisted by disable-interpreters.inc) include allow-python3.inc @@ -14,6 +16,7 @@ include disable-devel.inc include disable-exec.inc include disable-interpreters.inc include disable-programs.inc +#include disable-x11.inc # x11 none include disable-xdg.inc whitelist /var/log/apt/history.log @@ -37,6 +40,7 @@ nou2f novideo seccomp tracelog +x11 none disable-mnt private -- cgit v1.2.3-54-g00ecf