From 738c2033790bf92c4831d115ea746ec3cf9d6cca Mon Sep 17 00:00:00 2001 From: Fred Barclay Date: Sat, 29 Apr 2017 10:55:14 -0500 Subject: Added galculator profile --- etc/disable-programs.inc | 1 + etc/galculator.profile | 30 ++++++++++++++++++++++++++++++ 2 files changed, 31 insertions(+) create mode 100644 etc/galculator.profile (limited to 'etc') diff --git a/etc/disable-programs.inc b/etc/disable-programs.inc index 0f6ed5fa1..89abbafd8 100644 --- a/etc/disable-programs.inc +++ b/etc/disable-programs.inc @@ -74,6 +74,7 @@ blacklist ${HOME}/.config/evolution blacklist ${HOME}/.config/filezilla blacklist ${HOME}/.config/flowblade blacklist ${HOME}/.config/gajim +blacklist ${HOME}/.config/galculator blacklist ${HOME}/.config/geany blacklist ${HOME}/.config/geeqie blacklist ${HOME}/.config/gedit diff --git a/etc/galculator.profile b/etc/galculator.profile new file mode 100644 index 000000000..d72048112 --- /dev/null +++ b/etc/galculator.profile @@ -0,0 +1,30 @@ +# This file is overwritten during software install. +# Persistent customizations should go in a .local file. +include /etc/firejail/firejail.local + +# Firejail profile for XYZ +noblacklist ~/.config/galculator + +include /etc/firejail/disable-common.inc +include /etc/firejail/disable-programs.inc +include /etc/firejail/disable-devel.inc +include /etc/firejail/disable-passwdmgr.inc + +mkdir ~/.config/galculator +whitelist ~/.config/galculator + +caps.drop all +net none +nogroups +nonewprivs +noroot +nosound +protocol unix +seccomp +shell none +tracelog + +private-bin galculator +private-dev +private-etc fonts +private-tmp -- cgit v1.2.3-54-g00ecf