From b7d51c2df6fb62d7830bdd3a873fff618adb00dc Mon Sep 17 00:00:00 2001 From: Tad Date: Sat, 15 Apr 2017 16:07:25 -0400 Subject: Harden 19 more profiles --- etc/eog.profile | 5 +++++ 1 file changed, 5 insertions(+) (limited to 'etc/eog.profile') diff --git a/etc/eog.profile b/etc/eog.profile index c5afec7fa..7c2cd557c 100644 --- a/etc/eog.profile +++ b/etc/eog.profile @@ -11,7 +11,9 @@ include /etc/firejail/disable-devel.inc include /etc/firejail/disable-passwdmgr.inc caps.drop all +net none netfilter +no3d nogroups nonewprivs noroot @@ -24,3 +26,6 @@ private-bin eog private-dev private-etc fonts private-tmp + +noexec ${HOME} +noexec /tmp -- cgit v1.2.3-70-g09d2