diff --git a/etc/electron.profile b/etc/electron.profile new file mode 100644 index 000000000..efaecf029 --- /dev/null +++ b/etc/electron.profile @@ -0,0 +1,12 @@ +# Generic Firejail profile for Electron applications. +include /etc/firejail/disable-common.inc +include /etc/firejail/disable-programs.inc +include /etc/firejail/disable-passwdmgr.inc + +caps.drop all +netfilter +nogroups +nonewprivs +noroot +protocol unix,inet,inet6,netlink +seccomp diff --git a/etc/riot-web.profile b/etc/riot-web.profile new file mode 100644 index 000000000..4814dadf7 --- /dev/null +++ b/etc/riot-web.profile @@ -0,0 +1,5 @@ +# Firejail profile for Riot. +noblacklist ~/.config/Riot +whitelist ~/.config/Riot + +include /etc/firejail/electron.profile