From b7d51c2df6fb62d7830bdd3a873fff618adb00dc Mon Sep 17 00:00:00 2001 From: Tad Date: Sat, 15 Apr 2017 16:07:25 -0400 Subject: Harden 19 more profiles --- etc/hexchat.profile | 4 ++++ 1 file changed, 4 insertions(+) (limited to 'etc/hexchat.profile') diff --git a/etc/hexchat.profile b/etc/hexchat.profile index 53f447f7e..d24f492d8 100644 --- a/etc/hexchat.profile +++ b/etc/hexchat.profile @@ -13,6 +13,7 @@ include /etc/firejail/disable-devel.inc caps.drop all netfilter +no3d nogroups nonewprivs noroot @@ -30,3 +31,6 @@ private-bin hexchat #debug note: private-bin requires perl, python, etc on some systems private-dev private-tmp + +noexec ${HOME} +noexec /tmp -- cgit v1.2.3-70-g09d2