firejail/etc
smitsohu f4f44a5f96 refresh syscall groups (#5188)
now covers syscalls up to including process_madvise (440)

group assignment was blindly copied from systemd:
729d2df806/src/shared/seccomp-util.c (L305)

the only exception is close_range, which was added to both @basic-io and @file-system

this commit adds the following syscalls to the default blacklist:
pidfd_getfd,fsconfig,fsmount,fsopen,fspick,move_mount,open_tree
2022-07-17 17:05:36 +02:00
..
apparmor Update firejail-default 2022-04-02 23:52:44 +03:00
inc add Colossal Order to steam.profile 2022-07-05 17:48:24 +00:00
net Create nolocal6.net 2021-01-18 11:12:51 +03:00
profile-a-l aria2c.profile: add comment to winetricks workaround 2022-07-11 01:31:11 -03:00
profile-m-z add Colossal Order to steam.profile 2022-07-05 17:48:24 +00:00
templates refresh syscall groups (#5188) 2022-07-17 17:05:36 +02:00
firejail.config disabled private-lib in /etc/firejail/firejail.config 2022-06-23 11:09:31 -04:00
ids.config disable-shell.inc: add global shell paths from ids.config 2022-06-02 00:28:10 -03:00
login.users