From 3da7ed2d8b6a6cb85b9fd07906b0ad518d5ccc32 Mon Sep 17 00:00:00 2001 From: Thomas Jarosch Date: Thu, 28 Jul 2016 16:24:29 +0200 Subject: Add profile for uudeview uudeview might access unsafe email content, therefore restrict it as much as possible. In fact it's best to call firejail with a private home dir, too. --- etc/uudeview.profile | 13 +++++++++++++ 1 file changed, 13 insertions(+) create mode 100644 etc/uudeview.profile (limited to 'etc/uudeview.profile') diff --git a/etc/uudeview.profile b/etc/uudeview.profile new file mode 100644 index 000000000..8218ac959 --- /dev/null +++ b/etc/uudeview.profile @@ -0,0 +1,13 @@ +# uudeview profile +# the default profile will disable root user, enable seccomp filter etc. +include /etc/firejail/default.profile + +tracelog +net none +shell none +private-bin uudeview +private-dev +private-tmp +private-etc nonexisting_fakefile_for_empty_etc +hostname uudeview +nosound -- cgit v1.2.3-54-g00ecf