From 60606c2d041dc08b0af10baff1b18dbf507f8d81 Mon Sep 17 00:00:00 2001 From: Tad Date: Sat, 16 Sep 2017 13:47:31 -0400 Subject: Fixup 36 profiles --- etc/natron.profile | 26 +++++++++----------------- 1 file changed, 9 insertions(+), 17 deletions(-) (limited to 'etc/natron.profile') diff --git a/etc/natron.profile b/etc/natron.profile index 6101d1331..8f266f56c 100644 --- a/etc/natron.profile +++ b/etc/natron.profile @@ -5,30 +5,22 @@ include /etc/firejail/natron.local # Persistent global definitions include /etc/firejail/globals.local -# Contributed by triceratops1 (https://github.com/triceratops1) -blacklist /boot -blacklist /media -blacklist /mnt -blacklist /usr/local/bin -blacklist /usr/local/sbin +noblacklist ${HOME}/.Natron +noblacklist ${HOME}/.cache/INRIA/Natron/ +noblacklist ${HOME}/.config/INRIA/ +noblacklist /opt/natron/ -whitelist ${DOWNLOADS} -whitelist ${HOME}/.Natron -whitelist ${HOME}/.cache/INRIA/Natron/ -whitelist ${HOME}/.config/INRIA/ -whitelist ${HOME}/.gtkrc-2.0 -whitelist ${HOME}/.themes -whitelist ${HOME}/Videos -whitelist /opt/natron/ -whitelist /tmp/.X11-unix/ -include /etc/firejail/whitelist-common.inc +include /etc/firejail/disable-common.inc +include /etc/firejail/disable-devel.inc +include /etc/firejail/disable-passwdmgr.inc +include /etc/firejail/disable-programs.inc ipc-namespace shell none private-bin natron -private-etc fonts,X11,pulse +#private-etc fonts,X11,pulse noexec ${HOME} noexec /tmp -- cgit v1.2.3-70-g09d2