From 55938d07a58d29ceb893e4554a4ddf3c41810fc9 Mon Sep 17 00:00:00 2001 From: smitsohu Date: Sun, 22 Oct 2017 11:34:51 +0200 Subject: disable non-abstract session bus address systematically blacklist /run/user/*/bus in all profiles with 'net none'. targets distros like Fedora --- etc/x-terminal-emulator.profile | 1 + 1 file changed, 1 insertion(+) (limited to 'etc/x-terminal-emulator.profile') diff --git a/etc/x-terminal-emulator.profile b/etc/x-terminal-emulator.profile index 1395b81c9..67707ffb8 100644 --- a/etc/x-terminal-emulator.profile +++ b/etc/x-terminal-emulator.profile @@ -5,6 +5,7 @@ include /etc/firejail/x-terminal-emulator.local # Persistent global definitions include /etc/firejail/globals.local +blacklist /run/user/*/bus caps.drop all ipc-namespace -- cgit v1.2.3-54-g00ecf