From dd8c7d1ea1db204908a8310f340f7600111d416e Mon Sep 17 00:00:00 2001 From: rusty-snake Date: Thu, 19 Mar 2020 19:19:52 +0100 Subject: extend default.profile --- etc/default.profile | 10 +++++++++- 1 file changed, 9 insertions(+), 1 deletion(-) diff --git a/etc/default.profile b/etc/default.profile index 95a6e8095..7731b6e00 100644 --- a/etc/default.profile +++ b/etc/default.profile @@ -16,6 +16,11 @@ include disable-passwdmgr.inc include disable-programs.inc # include disable-xdg.inc +# include whitelist-common.inc +# include whitelist-usr-share-common.inc +# include whitelist-runuser-common.inc +# include whitelist-var-common.inc + # apparmor caps.drop all # ipc-namespace @@ -42,8 +47,11 @@ seccomp # private-bin program # private-cache # private-dev -# private-etc alternatives +# see /usr/share/doc/firejail/profile.template for more common private-etc paths. +# private-etc alternatives,fonts,machine-id # private-lib +# private-opt none # private-tmp # memory-deny-write-execute +# read-only ${HOME} -- cgit v1.2.3-54-g00ecf