From 67f5e3ca811fcb7fc6d9fbf47a4ae84c12c5a616 Mon Sep 17 00:00:00 2001 From: Joan Figueras Date: Sun, 24 Apr 2016 15:18:23 +0200 Subject: cyberfox profile --- etc/cyberfox.profile | 52 ++++++++++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 52 insertions(+) create mode 100644 etc/cyberfox.profile (limited to 'etc') diff --git a/etc/cyberfox.profile b/etc/cyberfox.profile new file mode 100644 index 000000000..cef9ad464 --- /dev/null +++ b/etc/cyberfox.profile @@ -0,0 +1,52 @@ +# Firejail profile for Cyberfox (based on Mozilla Firefox) + +noblacklist ~/.8pecxstudios/cyberfox +noblacklist ~/.cache/8pecxstudios +include /etc/firejail/disable-common.inc +include /etc/firejail/disable-programs.inc +include /etc/firejail/disable-devel.inc + +caps.drop all +seccomp +protocol unix,inet,inet6,netlink +netfilter +tracelog +noroot + +whitelist ${DOWNLOADS} +mkdir ~/.8pecxstudios +whitelist ~/.8pecxstudios +mkdir ~/.cache +mkdir ~/.cache/8pecxstudios +mkdir ~/.cache/8pecxstudios/cyberfox +whitelist ~/.cache/8pecxstudios/cyberfox +whitelist ~/dwhelper +whitelist ~/.zotero +whitelist ~/.vimperatorrc +whitelist ~/.vimperator +whitelist ~/.pentadactylrc +whitelist ~/.pentadactyl +whitelist ~/.keysnail.js +whitelist ~/.config/gnome-mplayer +whitelist ~/.cache/gnome-mplayer/plugin +whitelist ~/.pki + +# lastpass, keepassx +whitelist ~/.keepassx +whitelist ~/.config/keepassx +whitelist ~/keepassx.kdbx +whitelist ~/.lastpass +whitelist ~/.config/lastpass + + +#silverlight +whitelist ~/.wine-pipelight +whitelist ~/.wine-pipelight64 +whitelist ~/.config/pipelight-widevine +whitelist ~/.config/pipelight-silverlight5.1 + +include /etc/firejail/whitelist-common.inc + +# experimental features +#private-etc passwd,group,hostname,hosts,localtime,nsswitch.conf,resolv.conf,gtk-2.0,pango,fonts,iceweasel,firefox,adobe,mime.types,mailcap,asound.conf,pulse + -- cgit v1.2.3-54-g00ecf