mirror of
https://github.com/netblue30/firejail.git
synced 2026-05-21 06:45:29 -06:00
tracelog fixes
This commit is contained in:
parent
711ca44584
commit
1365b0d41b
39 changed files with 114 additions and 53 deletions
|
|
@ -7,7 +7,6 @@ caps.drop all
|
|||
seccomp
|
||||
protocol unix,inet,inet6
|
||||
netfilter
|
||||
tracelog
|
||||
noroot
|
||||
whitelist ~/.conkeror.mozdev.org
|
||||
whitelist ~/Downloads
|
||||
|
|
|
|||
|
|
@ -12,7 +12,6 @@ caps.drop all
|
|||
seccomp
|
||||
protocol unix,inet,inet6
|
||||
netfilter
|
||||
tracelog
|
||||
noroot
|
||||
|
||||
|
||||
|
|
|
|||
|
|
@ -5,5 +5,4 @@ include /etc/firejail/disable-mgmt.inc
|
|||
private
|
||||
private-dev
|
||||
seccomp.drop mount,umount2,ptrace,kexec_load,kexec_file_load,open_by_handle_at,init_module,finit_module,delete_module,iopl,ioperm,swapon,swapoff,syslog,process_vm_readv,process_vm_writev,sysfs,_sysctl,adjtimex,clock_adjtime,lookup_dcookie,perf_event_open,fanotify_init,kcmp,add_key,request_key,keyctl,uselib,acct,modify_ldt,pivot_root,io_setup,io_destroy,io_getevents,io_submit,io_cancel,remap_file_pages,mbind,get_mempolicy,set_mempolicy,migrate_pages,move_pages,vmsplice,perf_event_open
|
||||
tracelog
|
||||
|
||||
|
|
|
|||
|
|
@ -11,5 +11,4 @@ caps
|
|||
seccomp
|
||||
protocol unix,inet,inet6
|
||||
noroot
|
||||
tracelog
|
||||
|
||||
|
|
|
|||
|
|
@ -12,4 +12,3 @@ caps.drop all
|
|||
seccomp
|
||||
protocol unix,inet,inet6
|
||||
noroot
|
||||
tracelog
|
||||
|
|
|
|||
|
|
@ -13,6 +13,5 @@ caps.drop all
|
|||
seccomp
|
||||
protocol unix,inet,inet6
|
||||
netfilter
|
||||
tracelog
|
||||
noroot
|
||||
|
||||
|
|
|
|||
|
|
@ -11,6 +11,5 @@ seccomp
|
|||
protocol unix,inet,inet6
|
||||
noroot
|
||||
netfilter
|
||||
tracelog
|
||||
|
||||
|
||||
|
|
|
|||
|
|
@ -9,7 +9,6 @@ include /etc/firejail/disable-common.inc
|
|||
#
|
||||
|
||||
netfilter
|
||||
tracelog
|
||||
whitelist ${DOWNLOADS}
|
||||
whitelist ~/.config/google-chrome-beta
|
||||
whitelist ~/.cache/google-chrome-beta
|
||||
|
|
|
|||
|
|
@ -9,7 +9,6 @@ include /etc/firejail/disable-common.inc
|
|||
#
|
||||
|
||||
netfilter
|
||||
tracelog
|
||||
whitelist ${DOWNLOADS}
|
||||
whitelist ~/.config/google-chrome-unstable
|
||||
whitelist ~/.cache/google-chrome-unstable
|
||||
|
|
|
|||
|
|
@ -9,7 +9,6 @@ include /etc/firejail/disable-common.inc
|
|||
#
|
||||
|
||||
netfilter
|
||||
tracelog
|
||||
whitelist ${DOWNLOADS}
|
||||
whitelist ~/.config/google-chrome
|
||||
whitelist ~/.cache/google-chrome
|
||||
|
|
|
|||
|
|
@ -8,5 +8,4 @@ caps.drop all
|
|||
seccomp
|
||||
protocol unix,inet,inet6
|
||||
netfilter
|
||||
tracelog
|
||||
|
||||
|
|
|
|||
|
|
@ -5,7 +5,6 @@ include /etc/firejail/disable-secret.inc
|
|||
include /etc/firejail/disable-common.inc
|
||||
include /etc/firejail/disable-devel.inc
|
||||
netfilter
|
||||
tracelog
|
||||
whitelist ~/.config/opera-beta
|
||||
whitelist ${DOWNLOADS}
|
||||
whitelist ~/.cache/opera-beta
|
||||
|
|
|
|||
|
|
@ -5,7 +5,6 @@ include /etc/firejail/disable-secret.inc
|
|||
include /etc/firejail/disable-common.inc
|
||||
include /etc/firejail/disable-devel.inc
|
||||
netfilter
|
||||
tracelog
|
||||
whitelist ~/.config/opera
|
||||
whitelist ${DOWNLOADS}
|
||||
whitelist ~/.cache/opera
|
||||
|
|
|
|||
|
|
@ -12,6 +12,5 @@ caps.drop all
|
|||
seccomp
|
||||
protocol unix,inet,inet6
|
||||
netfilter
|
||||
tracelog
|
||||
noroot
|
||||
|
||||
|
|
|
|||
|
|
@ -7,5 +7,4 @@ caps.drop all
|
|||
seccomp
|
||||
protocol unix,inet,inet6
|
||||
netfilter
|
||||
tracelog
|
||||
noroot
|
||||
|
|
|
|||
|
|
@ -6,7 +6,6 @@ include /etc/firejail/disable-common.inc
|
|||
include /etc/firejail/disable-devel.inc
|
||||
caps.drop all
|
||||
netfilter
|
||||
tracelog
|
||||
noroot
|
||||
seccomp
|
||||
protocol unix,inet,inet6
|
||||
|
|
|
|||
|
|
@ -16,6 +16,5 @@ caps.drop all
|
|||
seccomp
|
||||
protocol unix,inet,inet6
|
||||
netfilter
|
||||
tracelog
|
||||
noroot
|
||||
|
||||
|
|
|
|||
|
|
@ -7,7 +7,6 @@ include /etc/firejail/disable-common.inc
|
|||
include /etc/firejail/disable-devel.inc
|
||||
caps.drop all
|
||||
netfilter
|
||||
tracelog
|
||||
noroot
|
||||
seccomp
|
||||
protocol unix,inet,inet6
|
||||
|
|
|
|||
|
|
@ -12,7 +12,7 @@ caps.drop all
|
|||
seccomp
|
||||
protocol unix,inet,inet6
|
||||
netfilter
|
||||
noroot
|
||||
tracelog
|
||||
noroot
|
||||
|
||||
|
||||
|
|
|
|||
|
|
@ -7,5 +7,4 @@ caps.drop all
|
|||
seccomp
|
||||
protocol unix,inet,inet6
|
||||
netfilter
|
||||
tracelog
|
||||
noroot
|
||||
|
|
|
|||
|
|
@ -8,6 +8,5 @@ include /etc/firejail/disable-common.inc
|
|||
include /etc/firejail/disable-devel.inc
|
||||
caps.drop all
|
||||
netfilter
|
||||
tracelog
|
||||
noroot
|
||||
seccomp
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue