From f40cdf7ae36db8c14d5bf7ec8c2797ca7721316e Mon Sep 17 00:00:00 2001 From: glitsj16 Date: Wed, 6 Mar 2019 04:25:41 +0000 Subject: Add network functionality in sqlitebrowser.profile (#2525) --- etc/sqlitebrowser.profile | 12 +++++++----- 1 file changed, 7 insertions(+), 5 deletions(-) (limited to 'etc/sqlitebrowser.profile') diff --git a/etc/sqlitebrowser.profile b/etc/sqlitebrowser.profile index 6bdd437cd..8122079e1 100644 --- a/etc/sqlitebrowser.profile +++ b/etc/sqlitebrowser.profile @@ -18,10 +18,11 @@ include disable-xdg.inc include whitelist-var-common.inc +apparmor caps.drop all -net none -no3d -nodbus +ipc-namespace +netfilter +# nodbus - breaks proxy creation nodvd nogroups nonewprivs @@ -30,15 +31,16 @@ nosound notv nou2f novideo -protocol unix +protocol unix,inet,inet6,netlink seccomp shell none private-bin sqlitebrowser private-cache private-dev +private-etc alternatives,ca-certificates,crypto-policies,fonts,group,machine-id,passwd,pki,ssl private-tmp -# memory-deny-write-execute - breaks on Arch +memory-deny-write-execute noexec ${HOME} noexec /tmp -- cgit v1.2.3-70-g09d2