mirror of
https://github.com/netblue30/firejail.git
synced 2026-05-21 06:45:29 -06:00
testing
This commit is contained in:
parent
a83a7fc106
commit
746b6aa3b8
10 changed files with 57 additions and 90 deletions
|
|
@ -1,38 +1,10 @@
|
|||
################################
|
||||
# Generic profile based on Firefox profile
|
||||
# Generic GUI application profile
|
||||
################################
|
||||
#include /etc/firejail/disable-mgmt.inc
|
||||
# system directories
|
||||
blacklist /sbin
|
||||
blacklist /usr/sbin
|
||||
# system management
|
||||
blacklist ${PATH}/umount
|
||||
blacklist ${PATH}/mount
|
||||
blacklist ${PATH}/fusermount
|
||||
blacklist ${PATH}/su
|
||||
blacklist ${PATH}/sudo
|
||||
blacklist ${PATH}/xinput
|
||||
blacklist ${PATH}/strace
|
||||
|
||||
#include /etc/firejail/disable-secret.inc
|
||||
# HOME directory
|
||||
blacklist ${HOME}/.ssh
|
||||
tmpfs ${HOME}/.gnome2_private
|
||||
blacklist ${HOME}/.gnome2/keyrings
|
||||
blacklist ${HOME}/kde4/share/apps/kwallet
|
||||
blacklist ${HOME}/kde/share/apps/kwallet
|
||||
blacklist ${HOME}/.pki/nssdb
|
||||
blacklist ${HOME}/.gnupg
|
||||
blacklist ${HOME}/.local/share/recently-used.xbel
|
||||
|
||||
blacklist ${HOME}/.adobe
|
||||
blacklist ${HOME}/.macromedia
|
||||
blacklist ${HOME}/.mozilla
|
||||
blacklist ${HOME}/.icedove
|
||||
blacklist ${HOME}/.thunderbird
|
||||
blacklist ${HOME}/.config/opera
|
||||
blacklist ${HOME}/.config/chromium
|
||||
blacklist ${HOME}/.config/google-chrome
|
||||
include /etc/firejail/disable-mgmt.inc
|
||||
include /etc/firejail/disable-secret.inc
|
||||
include /etc/firejail/disable-common.inc
|
||||
include /etc/firejail/disable-history.inc
|
||||
|
||||
caps.drop all
|
||||
seccomp
|
||||
|
|
|
|||
Loading…
Add table
Add a link
Reference in a new issue