Tad
b18f42ab02
Initial adding of memory-deny-write-execute to profiles
...
- mdwe breaks most vm-based languages so python/java/javascript and some mono programs are not compatible
- mdwe also breaks most 3d accelerated programs such as 3d games
- mdwe is similar to PaX's mprotect meaning PaX flag managers can be used as reference
-- See https://github.com/copperhead/paxd-archive/blob/master/paxd.conf
-- See https://github.com/nning/linux-pax-flags
2017-08-02 00:13:42 -04:00
Tad
0dba38435e
Harden profiles
...
- Added 'disable-devel.conf' to many profiles
- Added 'disable-mnt' to many profiles
- Added 'noexec' to many profiles
- Removed 'netfilter' and 'net none' from profiles with 'protocol unix'
- Cleaned up profiles using defaults
2017-08-02 00:13:42 -04:00
Panzerfather
c43a7f3798
Add access to trash
...
Eog needs access to trash to delete files
2017-07-23 00:59:34 +02:00
Fred Barclay
05fbfe6389
test: add novideo to profiles (part 1)
2017-06-15 12:02:43 -05:00
netblue30
2fcac103e5
commented out ipc-namespace in most profiles - it breaks newer versions of GDK with the following error: Gdk-ERROR **: The program 'thunderbird' received an X Window System error
2017-05-25 07:27:26 -04:00
netblue30
dce9b9b9eb
added /etc/firejail/globals.local for global customizations
2017-05-23 12:02:22 -04:00
Fred Barclay
0c8ab35848
Potential fix for #1280
...
Many steam directories can begin with either lower- or upper-case 's'.
2017-05-19 20:51:54 -05:00
Fred Barclay
6262b3078c
Corrections from earlier noblacklist steam for image viewers
2017-05-06 23:31:37 -05:00
Fred Barclay
ba0e6f5dd6
Allow common image viewers to access ~/steam/steam/userdata (Fix for #1267 )
...
These are all the image viewers I know of. We'll probably need to edit a few
that I missed in the future.
2017-05-06 10:09:24 -05:00
Tad
4f238b75de
Harden more profiles
2017-04-17 17:11:24 -04:00
Tad
b7d51c2df6
Harden 19 more profiles
2017-04-15 16:07:25 -04:00
netblue30
975c6f327f
persistent support for all profile files
2017-02-09 10:53:33 -05:00
valoq
ecd3b2191b
fixed spacing in profiles
2016-11-19 22:22:19 +01:00
valoq
7d1fbcb6ab
added nosound
2016-11-03 21:35:24 +01:00
Fred-Barclay
88972056f4
squash attempt 2
2016-10-24 15:33:54 -05:00
valoq
c9f3b36f73
added profiles
2016-10-18 16:58:02 +02:00