From 9e3ba319be6b9546d7e8f450ca419ee2f3f4040b Mon Sep 17 00:00:00 2001 From: Tad Date: Mon, 7 Aug 2017 01:22:08 -0400 Subject: Unify all profiles --- etc/dragon.profile | 19 +++++++++---------- 1 file changed, 9 insertions(+), 10 deletions(-) (limited to 'etc/dragon.profile') diff --git a/etc/dragon.profile b/etc/dragon.profile index 47d2c593a..e8d82363b 100644 --- a/etc/dragon.profile +++ b/etc/dragon.profile @@ -1,17 +1,16 @@ -# Persistent global definitions go here -include /etc/firejail/globals.local - -# This file is overwritten during software install. -# Persistent customizations should go in a .local file. +# Firejail profile for dragon +# This file is overwritten after every install/update +# Persistent local customizations include /etc/firejail/dragon.local +# Persistent global definitions +include /etc/firejail/globals.local -# dragon player profile noblacklist ~/.config/dragonplayerrc include /etc/firejail/disable-common.inc -include /etc/firejail/disable-programs.inc include /etc/firejail/disable-devel.inc include /etc/firejail/disable-passwdmgr.inc +include /etc/firejail/disable-programs.inc caps.drop all netfilter @@ -19,14 +18,14 @@ nogroups nonewprivs noroot novideo -shell none -seccomp protocol unix,inet,inet6 +seccomp +shell none private-bin dragon private-dev -private-tmp # private-etc +private-tmp noexec ${HOME} noexec /tmp -- cgit v1.2.3-70-g09d2