From b7d51c2df6fb62d7830bdd3a873fff618adb00dc Mon Sep 17 00:00:00 2001 From: Tad Date: Sat, 15 Apr 2017 16:07:25 -0400 Subject: Harden 19 more profiles --- etc/keepass.profile | 8 ++++++-- 1 file changed, 6 insertions(+), 2 deletions(-) (limited to 'etc/keepass.profile') diff --git a/etc/keepass.profile b/etc/keepass.profile index d269c3e8a..abe52eca3 100644 --- a/etc/keepass.profile +++ b/etc/keepass.profile @@ -15,14 +15,18 @@ include /etc/firejail/disable-devel.inc include /etc/firejail/disable-passwdmgr.inc caps.drop all +netfilter +no3d nogroups nonewprivs noroot nosound protocol unix,inet,inet6 seccomp -netfilter shell none -private-tmp private-dev +private-tmp + +noexec ${HOME} +noexec /tmp -- cgit v1.2.3-54-g00ecf