From 9e3ba319be6b9546d7e8f450ca419ee2f3f4040b Mon Sep 17 00:00:00 2001 From: Tad Date: Mon, 7 Aug 2017 01:22:08 -0400 Subject: Unify all profiles --- etc/bibletime.profile | 21 ++++++++++----------- 1 file changed, 10 insertions(+), 11 deletions(-) (limited to 'etc/bibletime.profile') diff --git a/etc/bibletime.profile b/etc/bibletime.profile index 2162151a1..d59c8e05c 100644 --- a/etc/bibletime.profile +++ b/etc/bibletime.profile @@ -1,11 +1,13 @@ -# Persistent global definitions go here +# Firejail profile for bibletime +# This file is overwritten after every install/update +# Persistent local customizations +include /etc/firejail/bibletime.local +# Persistent global definitions include /etc/firejail/globals.local -# This file is overwritten during software install. -# Persistent customizations should go in a .local file. -include /etc/firejail/bibletime.local +blacklist ~/.Xauthority +blacklist ~/.bashrc -# Firejail profile for BibleTime noblacklist ~/.bibletime noblacklist ~/.config/qt5ct noblacklist ~/.sword @@ -15,13 +17,10 @@ include /etc/firejail/disable-devel.inc include /etc/firejail/disable-passwdmgr.inc include /etc/firejail/disable-programs.inc -blacklist ~/.bashrc -blacklist ~/.Xauthority - whitelist ${HOME}/.bibletime whitelist ${HOME}/.config/qt5ct whitelist ${HOME}/.sword - +include /etc/firejail/whitelist-common.inc caps.drop all netfilter @@ -35,7 +34,7 @@ seccomp shell none tracelog -#private-bin bibletime,qt5ct -private-etc fonts,resolv.conf,sword,sword.conf,passwd +# private-bin bibletime,qt5ct private-dev +private-etc fonts,resolv.conf,sword,sword.conf,passwd private-tmp -- cgit v1.2.3-70-g09d2