Skip to content

Commit

Permalink
profiles
Browse files Browse the repository at this point in the history
  • Loading branch information
netblue30 committed Nov 7, 2016
1 parent 3699dd7 commit de5b536
Show file tree
Hide file tree
Showing 3 changed files with 10 additions and 1 deletion.
9 changes: 8 additions & 1 deletion etc/disable-common.inc
Original file line number Diff line number Diff line change
Expand Up @@ -42,6 +42,7 @@ blacklist ${HOME}/.VeraCrypt
# var
blacklist /var/spool/cron
blacklist /var/spool/anacron
blacklist /var/mail
blacklist /var/run/acpid.socket
blacklist /var/run/minissdpd.sock
blacklist /var/run/rpcbind.sock
Expand All @@ -52,7 +53,7 @@ blacklist /var/lib/mysql/mysql.sock
blacklist /var/run/docker.sock

# etc
blacklist /etc/cron.*
blacklist /etc/cron*
blacklist /etc/profile.d
blacklist /etc/rc.local
blacklist /etc/anacrontab
Expand Down Expand Up @@ -147,6 +148,8 @@ blacklist /usr/local/sbin
blacklist ${PATH}/umount
blacklist ${PATH}/mount
blacklist ${PATH}/fusermount
blacklist ${PATH}/ntfs-3g
blacklist ${PATH}/at
blacklist ${PATH}/su
blacklist ${PATH}/sudo
blacklist ${PATH}/xinput
Expand All @@ -171,6 +174,10 @@ blacklist ${PATH}/chfn
blacklist ${PATH}/chage
blacklist ${PATH}/expiry
blacklist ${PATH}/unix_chkpwd
blacklist ${PATH}/procmail

# other SUID binaries
blacklist /usr/lib/virtualbox

# prevent lxterminal connecting to an existing lxterminal session
blacklist /tmp/.lxterminal-socket*
Expand Down
1 change: 1 addition & 0 deletions etc/virtualbox.profile
Original file line number Diff line number Diff line change
Expand Up @@ -3,6 +3,7 @@
noblacklist ${HOME}/.VirtualBox
noblacklist ${HOME}/VirtualBox VMs
noblacklist ${HOME}/.config/VirtualBox
noblacklist /usr/bin/virtualbox
include /etc/firejail/disable-common.inc
include /etc/firejail/disable-programs.inc
include /etc/firejail/disable-passwdmgr.inc
Expand Down
1 change: 1 addition & 0 deletions platform/debian/conffiles
Original file line number Diff line number Diff line change
Expand Up @@ -170,5 +170,6 @@
/etc/firejail/xiphos.profile
/etc/firejail/display.profile
/etc/firejail/Wire.profile
/etc/firejail/wire.profile
/etc/firejail/mumble.profile
/etc/firejail/zoom.profile

0 comments on commit de5b536

Please sign in to comment.