Add 10 new profiles

Added profiles for Bless, Gnome 2048, Gnome Calculator, Gnome Contacts, JD-GUI, Lollypop, MultiMC5, PDFSam, Pithos, and Xonotic
This commit is contained in:
Tad 2016-11-29 06:47:23 -05:00
parent 87d3344bb5
commit 6900970979
13 changed files with 227 additions and 0 deletions

20
etc/bless.profile Normal file
View file

@ -0,0 +1,20 @@
#
#Profile for bless
#
#No Blacklist Paths
noblacklist ${HOME}/.config/bless
#Blacklist Paths
include /etc/firejail/disable-common.inc
include /etc/firejail/disable-programs.inc
include /etc/firejail/disable-passwdmgr.inc
include /etc/firejail/disable-devel.inc
#Options
caps.drop all
netfilter
nonewprivs
noroot
protocol unix,inet,inet6
seccomp

View file

@ -10,6 +10,7 @@ blacklist ${HOME}/.stellarium
blacklist ${HOME}/.sword
blacklist ${HOME}/.xiphos
blacklist ${HOME}/.config/Atom
blacklist ${HOME}/.config/bless
blacklist ${HOME}/.config/gthumb
blacklist ${HOME}/.config/mupen64plus
blacklist ${HOME}/.config/transmission
@ -44,6 +45,7 @@ blacklist ${HOME}/.openshot_qt
blacklist ${HOME}/.flowblade
blacklist ${HOME}/.config/flowblade
blacklist ${HOME}/.config/eog
blacklist ${HOME}/.config/jd-gui.cfg
# Media players
@ -56,6 +58,7 @@ blacklist ${HOME}/.config/totem
blacklist ${HOME}/.config/xplayer
blacklist ${HOME}/.audacity-data
blacklist ${HOME}/.guayadeque
blacklist ${HOME}/.local/share/lollypop
# HTTP / FTP / Mail
blacklist ${HOME}/.icedove
@ -119,6 +122,10 @@ blacklist ${HOME}/.config/wesnoth
blacklist ${HOME}/.config/0ad
blacklist ${HOME}/.warzone2100-3.1
blacklist ${HOME}/.dosbox
blacklist ${HOME}/.local/share/gnome-2048
blacklist ${HOME}/.local/share/multimc5
blacklist ${HOME}/.multimc5
blacklist ${HOME}/.xonotic
# Cryptocoins
blacklist ${HOME}/.*coin

25
etc/gnome-2048.profile Normal file
View file

@ -0,0 +1,25 @@
#
#Profile for gnome-2048
#
#No Blacklist Paths
noblacklist ${HOME}/.local/share/gnome-2048
#Blacklist Paths
include /etc/firejail/disable-common.inc
include /etc/firejail/disable-programs.inc
include /etc/firejail/disable-passwdmgr.inc
include /etc/firejail/disable-devel.inc
#Whitelist Paths
mkdir ${HOME}/.local/share/gnome-2048
whitelist ${HOME}/.local/share/gnome-2048
include /etc/firejail/whitelist-common.inc
#Options
caps.drop all
netfilter
nonewprivs
noroot
protocol unix,inet,inet6
seccomp

View file

@ -0,0 +1,19 @@
#
#Profile for gnome-calculator
#
#Blacklist Paths
include /etc/firejail/disable-common.inc
include /etc/firejail/disable-programs.inc
include /etc/firejail/disable-passwdmgr.inc
include /etc/firejail/disable-devel.inc
include /etc/firejail/whitelist-common.inc
#Options
caps.drop all
netfilter
nonewprivs
noroot
protocol unix,inet,inet6
seccomp

View file

@ -0,0 +1,19 @@
#
#Profile for gnome-contacts
#
#Blacklist Paths
include /etc/firejail/disable-common.inc
include /etc/firejail/disable-programs.inc
include /etc/firejail/disable-passwdmgr.inc
include /etc/firejail/disable-devel.inc
include /etc/firejail/whitelist-common.inc
#Options
caps.drop all
netfilter
nonewprivs
noroot
protocol unix,inet,inet6
seccomp

19
etc/jd-gui.profile Normal file
View file

@ -0,0 +1,19 @@
#
#Profile for jd-gui
#
noblacklist ${HOME}/.config/jd-gui.cfg
#Blacklist Paths
include /etc/firejail/disable-common.inc
include /etc/firejail/disable-programs.inc
include /etc/firejail/disable-passwdmgr.inc
include /etc/firejail/disable-devel.inc
#Options
caps.drop all
netfilter
nonewprivs
noroot
protocol unix,inet,inet6
seccomp

20
etc/lollypop.profile Normal file
View file

@ -0,0 +1,20 @@
#
#Profile for lollypop
#
#No Blacklist Paths
noblacklist ${HOME}/.local/share/lollypop
#Blacklist Paths
include /etc/firejail/disable-common.inc
include /etc/firejail/disable-programs.inc
include /etc/firejail/disable-passwdmgr.inc
include /etc/firejail/disable-devel.inc
#Options
caps.drop all
netfilter
nonewprivs
noroot
protocol unix,inet,inet6
seccomp

27
etc/multimc5.profile Normal file
View file

@ -0,0 +1,27 @@
#
#Profile for multimc5
#
#No Blacklist Paths
noblacklist ${HOME}/.local/share/multimc5
noblacklist ${HOME}/.multimc5
#Blacklist Paths
include /etc/firejail/disable-common.inc
include /etc/firejail/disable-programs.inc
include /etc/firejail/disable-passwdmgr.inc
include /etc/firejail/disable-devel.inc
#Whitelist Paths
mkdir ${HOME}/.local/share/multimc5
whitelist ${HOME}/.local/share/multimc5
mkdir ${HOME}/.multimc5
whitelist ${HOME}/.multimc5
include /etc/firejail/whitelist-common.inc
#Options
caps.drop all
netfilter
nonewprivs
noroot
protocol unix,inet,inet6

17
etc/pdfsam.profile Normal file
View file

@ -0,0 +1,17 @@
#
#Profile for pdfsam
#
#Blacklist Paths
include /etc/firejail/disable-common.inc
include /etc/firejail/disable-programs.inc
include /etc/firejail/disable-passwdmgr.inc
include /etc/firejail/disable-devel.inc
#Options
caps.drop all
netfilter
nonewprivs
noroot
protocol unix,inet,inet6
seccomp

19
etc/pithos.profile Normal file
View file

@ -0,0 +1,19 @@
#
#Profile for pithos
#
#Blacklist Paths
include /etc/firejail/disable-common.inc
include /etc/firejail/disable-programs.inc
include /etc/firejail/disable-passwdmgr.inc
include /etc/firejail/disable-devel.inc
include /etc/firejail/whitelist-common.inc
#Options
caps.drop all
netfilter
nonewprivs
noroot
protocol unix,inet,inet6
seccomp

5
etc/xonotic-glx.profile Normal file
View file

@ -0,0 +1,5 @@
#
#Profile for xonotic:xonotic-glx
#
include /etc/firejail/xonotic.profile

5
etc/xonotic-sdl.profile Normal file
View file

@ -0,0 +1,5 @@
#
#Profile for xonotic:xonotic-sdl
#
include /etc/firejail/xonotic.profile

25
etc/xonotic.profile Normal file
View file

@ -0,0 +1,25 @@
#
#Profile for xonotic
#
#No Blacklist Paths
noblacklist ${HOME}/.xonotic
#Blacklist Paths
include /etc/firejail/disable-common.inc
include /etc/firejail/disable-programs.inc
include /etc/firejail/disable-passwdmgr.inc
include /etc/firejail/disable-devel.inc
#Whitelist Paths
mkdir ${HOME}/.xonotic
whitelist ${HOME}/.xonotic
include /etc/firejail/whitelist-common.inc
#Options
caps.drop all
netfilter
nonewprivs
noroot
protocol unix,inet,inet6
seccomp