From ba0fe38fd01ee07f204a175cd3fc1c0d49e418b8 Mon Sep 17 00:00:00 2001 From: rusty-snake Date: Thu, 2 Jan 2020 10:35:39 +0100 Subject: Harden openshot --- etc/openshot.profile | 5 +++-- 1 file changed, 3 insertions(+), 2 deletions(-) (limited to 'etc') diff --git a/etc/openshot.profile b/etc/openshot.profile index 0222243ed..116cb56e4 100644 --- a/etc/openshot.profile +++ b/etc/openshot.profile @@ -24,7 +24,7 @@ include whitelist-var-common.inc apparmor caps.drop all -netfilter +net none nodbus nodvd nogroups @@ -32,9 +32,10 @@ nonewprivs noroot notv nou2f -protocol unix,inet,inet6,netlink +protocol unix,netlink seccomp shell none +tracelog private-dev private-tmp -- cgit v1.2.3-54-g00ecf