From bc5a06e9970fe03325f28e0cdef96ea5c596113f Mon Sep 17 00:00:00 2001 From: Fred-Barclay Date: Tue, 19 Apr 2016 00:06:13 +1000 Subject: added gpredict profile --- etc/disable-programs.inc | 1 + etc/gpredict.profile | 23 +++++++++++++++++++++++ 2 files changed, 24 insertions(+) create mode 100644 etc/gpredict.profile (limited to 'etc') diff --git a/etc/disable-programs.inc b/etc/disable-programs.inc index 23dd8e025..6c5515894 100644 --- a/etc/disable-programs.inc +++ b/etc/disable-programs.inc @@ -8,6 +8,7 @@ blacklist ${HOME}/.Wolfram Research blacklist ${HOME}/.config/mupen64plus blacklist ${HOME}/.config/transmission blacklist ${HOME}/.config/uGet +blacklist ${HOME}/.config/Gpredict blacklist ~/.kde/share/apps/okular blacklist ~/.kde/share/config/okularrc blacklist ~/.kde/share/config/okularpartrc diff --git a/etc/gpredict.profile b/etc/gpredict.profile new file mode 100644 index 000000000..f53cb1b4f --- /dev/null +++ b/etc/gpredict.profile @@ -0,0 +1,23 @@ +# Firejail profile for gpredict. + +# Noblacklist +noblacklist ~/.config/Gpredict + +# Include +include /etc/firejail/disable-common.inc +include /etc/firejail/disable-devel.inc +include /etc/firejail/disable-passwdmgr.inc +include /etc/firejail/disable-programs.inc + +# Call these options +caps.drop all +netfilter +noroot +protocol unix,inet,inet6,netlink +seccomp +tracelog + +# Whitelist +mkdir ~/.config +mkdir ~/.config/Gpredict +whitelist ~/.config/Gpredict -- cgit v1.2.3-70-g09d2