From 55938d07a58d29ceb893e4554a4ddf3c41810fc9 Mon Sep 17 00:00:00 2001 From: smitsohu Date: Sun, 22 Oct 2017 11:34:51 +0200 Subject: disable non-abstract session bus address systematically blacklist /run/user/*/bus in all profiles with 'net none'. targets distros like Fedora --- etc/clamav.profile | 1 + 1 file changed, 1 insertion(+) (limited to 'etc/clamav.profile') diff --git a/etc/clamav.profile b/etc/clamav.profile index a5aacc1d5..c3a0132d0 100644 --- a/etc/clamav.profile +++ b/etc/clamav.profile @@ -6,6 +6,7 @@ include /etc/firejail/clamav.local # Persistent global definitions include /etc/firejail/globals.local +blacklist /run/user/*/bus caps.drop all ipc-namespace -- cgit v1.2.3-70-g09d2