From 9e3ba319be6b9546d7e8f450ca419ee2f3f4040b Mon Sep 17 00:00:00 2001 From: Tad Date: Mon, 7 Aug 2017 01:22:08 -0400 Subject: Unify all profiles --- etc/gnome-calculator.profile | 28 ++++++++++++---------------- 1 file changed, 12 insertions(+), 16 deletions(-) (limited to 'etc/gnome-calculator.profile') diff --git a/etc/gnome-calculator.profile b/etc/gnome-calculator.profile index 40328e5c3..2e949271b 100644 --- a/etc/gnome-calculator.profile +++ b/etc/gnome-calculator.profile @@ -1,26 +1,19 @@ -# Persistent global definitions go here -include /etc/firejail/globals.local - -# This file is overwritten during software install. -# Persistent customizations should go in a .local file. +# Firejail profile for gnome-calculator +# This file is overwritten after every install/update +# Persistent local customizations include /etc/firejail/gnome-calculator.local +# Persistent global definitions +include /etc/firejail/globals.local -# -#Profile for gnome-calculator -# -#Blacklist Paths include /etc/firejail/disable-common.inc -include /etc/firejail/disable-programs.inc -include /etc/firejail/disable-passwdmgr.inc include /etc/firejail/disable-devel.inc - +include /etc/firejail/disable-passwdmgr.inc +include /etc/firejail/disable-programs.inc include /etc/firejail/whitelist-common.inc -#Options caps.drop all netfilter -#net none no3d nogroups nonewprivs @@ -30,13 +23,16 @@ protocol unix,inet,inet6 seccomp shell none +disable-mnt private private-bin gnome-calculator private-dev -#private-etc fonts +# private-etc fonts private-tmp -disable-mnt memory-deny-write-execute noexec ${HOME} noexec /tmp + +# CLOBBERED COMMENTS +# net none -- cgit v1.2.3-70-g09d2