From 5d39ac4b3d1a0a3d40ab9e36f974634408f9711a Mon Sep 17 00:00:00 2001 From: glitsj16 Date: Mon, 23 Nov 2020 10:57:17 +0000 Subject: harden xfce4-mixer.profile --- etc/profile-m-z/xfce4-mixer.profile | 7 +++++-- 1 file changed, 5 insertions(+), 2 deletions(-) (limited to 'etc') diff --git a/etc/profile-m-z/xfce4-mixer.profile b/etc/profile-m-z/xfce4-mixer.profile index 6ff4a1103..16a504ab3 100644 --- a/etc/profile-m-z/xfce4-mixer.profile +++ b/etc/profile-m-z/xfce4-mixer.profile @@ -19,6 +19,7 @@ include disable-xdg.inc mkfile ${HOME}/.config/xfce4/xfconf/xfce-perchannel-xml/xfce4-mixer.xml whitelist ${HOME}/.config/xfce4/xfconf/xfce-perchannel-xml/xfce4-mixer.xml +whitelist /usr/share/gstreamer whitelist /usr/share/xfce4 whitelist /usr/share/xfce4-mixer include whitelist-common.inc @@ -48,7 +49,9 @@ private-dev private-etc alternatives,asound.conf,fonts,machine-id,pulse private-tmp -# dbus-user none -# dbus-system none +dbus-user filter +dbus-user.own org.xfce.xfce4-mixer +dbus-user.talk org.xfce.Xfconf +dbus-system none memory-deny-write-execute -- cgit v1.2.3-54-g00ecf