firefox profile fixes

This commit is contained in:
netblue30 2015-11-16 08:34:52 -05:00
parent 8ad53f19a3
commit c0c4b8cad4
4 changed files with 15 additions and 7 deletions

2
README
View file

@ -18,6 +18,8 @@ License: GPL v2
Firejail Authors: Firejail Authors:
netblue30 (netblue30@yahoo.com) netblue30 (netblue30@yahoo.com)
Matt Parnell (https://github.com/ilikenwf)
- whitelisting for core firefox related functionality
Andrey Alekseenko (https://github.com/al42and) Andrey Alekseenko (https://github.com/al42and)
- fixed Skype profile - fixed Skype profile
Ondra Nekola (https://github.com/satai) Ondra Nekola (https://github.com/satai)

View file

@ -55,14 +55,21 @@ include /etc/firejail/whitelist-common.inc
````` `````
/etc/firejail/whitelist-common.inc /etc/firejail/whitelist-common.inc
````` `````
whitelist ~/.config/mimeapps.list (new in 0.9.35)
whitelist ~/.icons (new in 0.9.35)
# fonts
whitelist ~/.fonts (0.9.34) whitelist ~/.fonts (0.9.34)
whitelist ~/.fonts.d (0.9.34) whitelist ~/.fonts.d (0.9.34)
whitelist ~/.fontconfig (0.9.34) whitelist ~/.fontconfig (0.9.34)
whitelist ~/.fonts.conf (0.9.34) whitelist ~/.fonts.conf (0.9.34)
whitelist ~/.fonts.conf.d (0.9.34) whitelist ~/.fonts.conf.d (0.9.34)
# gtk
whitelist ~/.gtkrc (new in 0.9.35)
whitelist ~/.gtkrc-2.0 (0.9.34) whitelist ~/.gtkrc-2.0 (0.9.34)
whitelist ~/.config/gtk-3.0 (new in 0.9.35) whitelist ~/.config/gtk-3.0 (new in 0.9.35)
whitelist ~/.themes/ (new in 0.9.35) whitelist ~/.themes (new in 0.9.35)
````` `````
If you are using a plugin or extension that requires other directories, please open a new issue: https://github.com/netblue30/firejail/issues If you are using a plugin or extension that requires other directories, please open a new issue: https://github.com/netblue30/firejail/issues

View file

@ -1,6 +1,5 @@
# Firejail profile for Mozilla Firefox (Iceweasel in Debian) # Firejail profile for Mozilla Firefox (Iceweasel in Debian)
noblacklist ${HOME}/.mozilla noblacklist ${HOME}/.mozilla
noblacklist /usr/lib/firefox
include /etc/firejail/disable-mgmt.inc include /etc/firejail/disable-mgmt.inc
include /etc/firejail/disable-secret.inc include /etc/firejail/disable-secret.inc
include /etc/firejail/disable-common.inc include /etc/firejail/disable-common.inc
@ -10,11 +9,7 @@ seccomp
protocol unix,inet,inet6,netlink protocol unix,inet,inet6,netlink
netfilter netfilter
noroot noroot
whitelist ~/.config/mimeapps.list
whitelist ~/.gtkrc
whitelist ~/.icons
whitelist ~/.mozilla whitelist ~/.mozilla
whitelist ~/.themes
whitelist ~/Downloads whitelist ~/Downloads
whitelist ~/Загрузки whitelist ~/Загрузки
whitelist ~/.cache/mozilla/firefox whitelist ~/.cache/mozilla/firefox

View file

@ -1,5 +1,8 @@
# common whitelist for all profiles # common whitelist for all profiles
whitelist ~/.config/mimeapps.list
whitelist ~/.icons
# fonts # fonts
whitelist ~/.fonts whitelist ~/.fonts
whitelist ~/.fonts.d whitelist ~/.fonts.d
@ -8,6 +11,7 @@ whitelist ~/.fonts.conf
whitelist ~/.fonts.conf.d whitelist ~/.fonts.conf.d
# gtk # gtk
whitelist ~/.gtkrc
whitelist ~/.gtkrc-2.0 whitelist ~/.gtkrc-2.0
whitelist ~/.config/gtk-3.0 whitelist ~/.config/gtk-3.0
whitelist ~/.themes/ whitelist ~/.themes