From b7d51c2df6fb62d7830bdd3a873fff618adb00dc Mon Sep 17 00:00:00 2001 From: Tad Date: Sat, 15 Apr 2017 16:07:25 -0400 Subject: Harden 19 more profiles --- etc/evolution.profile | 5 +++++ 1 file changed, 5 insertions(+) (limited to 'etc/evolution.profile') diff --git a/etc/evolution.profile b/etc/evolution.profile index cb6615716..04bf480ff 100644 --- a/etc/evolution.profile +++ b/etc/evolution.profile @@ -9,6 +9,7 @@ noblacklist ~/.cache/evolution noblacklist ~/.pki noblacklist ~/.pki/nssdb noblacklist ~/.gnupg +noblacklist ~/.bogofilter noblacklist /var/spool/mail noblacklist /var/mail @@ -20,6 +21,7 @@ include /etc/firejail/disable-passwdmgr.inc caps.drop all netfilter +no3d nogroups nonewprivs noroot @@ -30,3 +32,6 @@ shell none private-dev private-tmp + +noexec ${HOME} +noexec /tmp -- cgit v1.2.3-70-g09d2