From c3b33900177a67d052bd4451d54f78994e25131a Mon Sep 17 00:00:00 2001 From: netblue30 Date: Sat, 5 Mar 2016 19:52:13 -0500 Subject: profiles cleanup --- etc/firefox.profile | 23 +++++++++++++++++++++-- 1 file changed, 21 insertions(+), 2 deletions(-) (limited to 'etc/firefox.profile') diff --git a/etc/firefox.profile b/etc/firefox.profile index 0b082f216..b06dfa6da 100644 --- a/etc/firefox.profile +++ b/etc/firefox.profile @@ -1,16 +1,21 @@ # Firejail profile for Mozilla Firefox (Iceweasel in Debian) -noblacklist ${HOME}/.mozilla + +noblacklist ~/.mozilla +noblacklist ~/.cache/mozilla +noblacklist ~/keepassx.kdbx include /etc/firejail/disable-mgmt.inc include /etc/firejail/disable-secret.inc include /etc/firejail/disable-common.inc include /etc/firejail/disable-devel.inc include /etc/firejail/disable-terminals.inc + caps.drop all seccomp protocol unix,inet,inet6,netlink netfilter tracelog noroot + whitelist ${DOWNLOADS} mkdir ~/.mozilla whitelist ~/.mozilla @@ -20,7 +25,6 @@ mkdir ~/.cache/mozilla/firefox whitelist ~/.cache/mozilla/firefox whitelist ~/dwhelper whitelist ~/.zotero -whitelist ~/.lastpass whitelist ~/.vimperatorrc whitelist ~/.vimperator whitelist ~/.pentadactylrc @@ -29,6 +33,21 @@ whitelist ~/.keysnail.js whitelist ~/.config/gnome-mplayer whitelist ~/.cache/gnome-mplayer/plugin whitelist ~/.pki + +# lastpass, keepassx +whitelist ~/.keepassx +whitelist ~/.config/keepassx +whitelist ~/keepassx.kdbx +whitelist ~/.lastpass +whitelist ~/.config/lastpass + + +#silverlight +whitelist ~/.wine-pipelight +whitelist ~/.wine-pipelight64 +whitelist ~/.config/pipelight-widevine +whitelist ~/.config/pipelight-silverlight5.1 + include /etc/firejail/whitelist-common.inc # experimental features -- cgit v1.2.3-54-g00ecf