From 9e3ba319be6b9546d7e8f450ca419ee2f3f4040b Mon Sep 17 00:00:00 2001 From: Tad Date: Mon, 7 Aug 2017 01:22:08 -0400 Subject: Unify all profiles --- etc/dino.profile | 18 ++++++++---------- 1 file changed, 8 insertions(+), 10 deletions(-) (limited to 'etc/dino.profile') diff --git a/etc/dino.profile b/etc/dino.profile index 94563fa1d..0501cd408 100644 --- a/etc/dino.profile +++ b/etc/dino.profile @@ -1,11 +1,10 @@ -# Persistent global definitions go here -include /etc/firejail/globals.local - -# This file is overwritten during software install. -# Persistent customizations should go in a .local file. +# Firejail profile for dino +# This file is overwritten after every install/update +# Persistent local customizations include /etc/firejail/dino.local +# Persistent global definitions +include /etc/firejail/globals.local -# Firejail profile for Dino noblacklist ${HOME}/.local/share/dino include /etc/firejail/disable-common.inc @@ -13,13 +12,12 @@ include /etc/firejail/disable-devel.inc include /etc/firejail/disable-passwdmgr.inc include /etc/firejail/disable-programs.inc -whitelist ${HOME}/Downloads mkdir ${HOME}/.local/share/dino whitelist ${HOME}/.local/share/dino +whitelist ${HOME}/Downloads include /etc/firejail/whitelist-common.inc caps.drop all -#ipc-namespace netfilter no3d nogroups @@ -31,11 +29,11 @@ protocol unix,inet,inet6 seccomp shell none +disable-mnt private-bin dino -#private-etc fonts #breaks server connection private-dev +# private-etc fonts # breaks server connection private-tmp -disable-mnt noexec ${HOME} noexec /tmp -- cgit v1.2.3-54-g00ecf