firejail/etc/chromium.profile
2017-08-11 10:21:18 -04:00

38 lines
935 B
Text

# Firejail profile for chromium
# This file is overwritten after every install/update
# Persistent local customizations
include /etc/firejail/chromium.local
# Persistent global definitions
include /etc/firejail/globals.local
noblacklist ~/.cache/chromium
noblacklist ~/.config/chromium
noblacklist ~/.config/chromium-flags.conf
noblacklist ~/.pki
include /etc/firejail/disable-common.inc
# chromium is distributed with a perl script on Arch
# include /etc/firejail/disable-devel.inc
include /etc/firejail/disable-programs.inc
mkdir ~/.cache/chromium
mkdir ~/.config/chromium
mkdir ~/.pki
whitelist ${DOWNLOADS}
whitelist ~/.cache/chromium
whitelist ~/.config/chromium
whitelist ~/.config/chromium-flags.conf
whitelist ~/.pki
include /etc/firejail/whitelist-common.inc
caps.keep sys_chroot,sys_admin
netfilter
nogroups
shell none
private-dev
# private-tmp - problems with multiple browser sessions
noexec ${HOME}
noexec /tmp
notv