Skip to content

Commit

Permalink
Add disable-xdg.inc to ~15 profiles
Browse files Browse the repository at this point in the history
  • Loading branch information
SkewedZeppelin committed Jul 24, 2018
1 parent e5aba00 commit 3d81be9
Show file tree
Hide file tree
Showing 18 changed files with 47 additions and 1 deletion.
1 change: 1 addition & 0 deletions etc/default.profile
Expand Up @@ -13,6 +13,7 @@ include /etc/firejail/disable-common.inc
# include /etc/firejail/disable-interpreters.inc
include /etc/firejail/disable-passwdmgr.inc
include /etc/firejail/disable-programs.inc
#include /etc/firejail/disable-xdg.inc

caps.drop all
# ipc-namespace
Expand Down
1 change: 1 addition & 0 deletions etc/dosbox.profile
Expand Up @@ -6,6 +6,7 @@ include /etc/firejail/dosbox.local
include /etc/firejail/globals.local

noblacklist ${HOME}/.dosbox
noblacklist ${DOCUMENTS}

include /etc/firejail/disable-common.inc
include /etc/firejail/disable-devel.inc
Expand Down
3 changes: 3 additions & 0 deletions etc/gnome-mplayer.profile
Expand Up @@ -6,12 +6,15 @@ include /etc/firejail/gnome-mplayer.local
include /etc/firejail/globals.local

noblacklist ${HOME}/.config/gnome-mplayer
noblacklist ${MUSIC}
noblacklist ${VIDEOS}

include /etc/firejail/disable-common.inc
include /etc/firejail/disable-devel.inc
include /etc/firejail/disable-interpreters.inc
include /etc/firejail/disable-passwdmgr.inc
include /etc/firejail/disable-programs.inc
include /etc/firejail/disable-xdg.inc

caps.drop all
nogroups
Expand Down
3 changes: 3 additions & 0 deletions etc/hugin.profile
Expand Up @@ -6,12 +6,15 @@ include /etc/firejail/hugin.local
include /etc/firejail/globals.local

noblacklist ${HOME}/.hugin
noblacklist ${DOCUMENTS}
noblacklist ${PICTURES}

include /etc/firejail/disable-common.inc
include /etc/firejail/disable-devel.inc
include /etc/firejail/disable-interpreters.inc
include /etc/firejail/disable-passwdmgr.inc
include /etc/firejail/disable-programs.inc
include /etc/firejail/disable-xdg.inc

caps.drop all
net none
Expand Down
4 changes: 4 additions & 0 deletions etc/img2txt.profile
Expand Up @@ -5,11 +5,15 @@ include /etc/firejail/img2txt.local
# Persistent global definitions
include /etc/firejail/globals.local

noblacklist ${DOCUMENTS}
noblacklist ${PICTURES}

include /etc/firejail/disable-common.inc
include /etc/firejail/disable-devel.inc
include /etc/firejail/disable-interpreters.inc
include /etc/firejail/disable-passwdmgr.inc
include /etc/firejail/disable-programs.inc
include /etc/firejail/disable-xdg.inc

caps.drop all
net none
Expand Down
3 changes: 3 additions & 0 deletions etc/kaffeine.profile
Expand Up @@ -11,12 +11,15 @@ noblacklist ${HOME}/.kde/share/config/kaffeinerc
noblacklist ${HOME}/.kde4/share/apps/kaffeine
noblacklist ${HOME}/.kde4/share/config/kaffeinerc
noblacklist ${HOME}/.local/share/kaffeine
noblacklist ${MUSIC}
noblacklist ${VIDEOS}

include /etc/firejail/disable-common.inc
include /etc/firejail/disable-devel.inc
include /etc/firejail/disable-interpreters.inc
include /etc/firejail/disable-passwdmgr.inc
include /etc/firejail/disable-programs.inc
include /etc/firejail/disable-xdg.inc

include /etc/firejail/whitelist-var-common.inc

Expand Down
3 changes: 3 additions & 0 deletions etc/lmms.profile
Expand Up @@ -6,12 +6,15 @@ include /etc/firejail/lmms.local
include /etc/firejail/globals.local

noblacklist ${HOME}/.lmmsrc.xml
noblacklist ${DOCUMENTS}
noblacklist ${MUSIC}

include /etc/firejail/disable-common.inc
include /etc/firejail/disable-devel.inc
include /etc/firejail/disable-interpreters.inc
include /etc/firejail/disable-passwdmgr.inc
include /etc/firejail/disable-programs.inc
include /etc/firejail/disable-xdg.inc

caps.drop all
ipc-namespace
Expand Down
2 changes: 2 additions & 0 deletions etc/macrofusion.profile
Expand Up @@ -6,6 +6,7 @@ include /etc/firejail/macrofusion.local
include /etc/firejail/globals.local

noblacklist ${HOME}/.config/mfusion
noblacklist ${PICTURES}

# Allow python (blacklisted by disable-interpreters.inc)
noblacklist ${PATH}/python2*
Expand All @@ -18,6 +19,7 @@ include /etc/firejail/disable-devel.inc
include /etc/firejail/disable-interpreters.inc
include /etc/firejail/disable-passwdmgr.inc
include /etc/firejail/disable-programs.inc
include /etc/firejail/disable-xdg.inc

caps.drop all
ipc-namespace
Expand Down
3 changes: 3 additions & 0 deletions etc/mplayer.profile
Expand Up @@ -6,12 +6,15 @@ include /etc/firejail/mplayer.local
include /etc/firejail/globals.local

noblacklist ${HOME}/.mplayer
noblacklist ${MUSIC}
noblacklist ${VIDEOS}

include /etc/firejail/disable-common.inc
include /etc/firejail/disable-devel.inc
include /etc/firejail/disable-interpreters.inc
include /etc/firejail/disable-passwdmgr.inc
include /etc/firejail/disable-programs.inc
include /etc/firejail/disable-xdg.inc

include /etc/firejail/whitelist-var-common.inc

Expand Down
3 changes: 3 additions & 0 deletions etc/musixmatch.profile
Expand Up @@ -5,10 +5,13 @@ include /etc/firejail/musixmatch.local
# Persistent global definitions
include /etc/firejail/globals.local

noblacklist ${MUSIC}

include /etc/firejail/disable-common.inc
include /etc/firejail/disable-devel.inc
include /etc/firejail/disable-passwdmgr.inc
include /etc/firejail/disable-programs.inc
include /etc/firejail/disable-xdg.inc

caps.drop all
ipc-namespace
Expand Down
3 changes: 3 additions & 0 deletions etc/odt2txt.profile
Expand Up @@ -5,13 +5,16 @@ include /etc/firejail/odt2txt.local
# Persistent global definitions
include /etc/firejail/globals.local

noblacklist ${DOCUMENTS}

blacklist /tmp/.X11-unix

include /etc/firejail/disable-common.inc
include /etc/firejail/disable-devel.inc
include /etc/firejail/disable-interpreters.inc
include /etc/firejail/disable-passwdmgr.inc
include /etc/firejail/disable-programs.inc
include /etc/firejail/disable-xdg.inc

caps.drop all
net none
Expand Down
3 changes: 3 additions & 0 deletions etc/pdftotext.profile
Expand Up @@ -5,13 +5,16 @@ include /etc/firejail/pdftotext.local
# Persistent global definitions
include /etc/firejail/globals.local

noblacklist ${DOCUMENTS}

blacklist /tmp/.X11-unix

include /etc/firejail/disable-common.inc
include /etc/firejail/disable-devel.inc
include /etc/firejail/disable-interpreters.inc
include /etc/firejail/disable-passwdmgr.inc
include /etc/firejail/disable-programs.inc
include /etc/firejail/disable-xdg.inc

include /etc/firejail/whitelist-var-common.inc

Expand Down
1 change: 1 addition & 0 deletions etc/server.profile
Expand Up @@ -20,6 +20,7 @@ include /etc/firejail/disable-common.inc
# include /etc/firejail/disable-interpreters.inc
include /etc/firejail/disable-passwdmgr.inc
include /etc/firejail/disable-programs.inc
#include /etc/firejail/disable-xdg.inc

caps
# ipc-namespace
Expand Down
3 changes: 3 additions & 0 deletions etc/tuxguitar.profile
Expand Up @@ -7,6 +7,8 @@ include /etc/firejail/globals.local

noblacklist ${HOME}/.java
noblacklist ${HOME}/.tuxguitar*
noblacklist ${DOCUMENTS}
noblacklist ${MUSIC}

# Allow access to java
noblacklist ${PATH}/java
Expand All @@ -19,6 +21,7 @@ include /etc/firejail/disable-devel.inc
include /etc/firejail/disable-interpreters.inc
include /etc/firejail/disable-passwdmgr.inc
include /etc/firejail/disable-programs.inc
include /etc/firejail/disable-xdg.inc

include /etc/firejail/whitelist-var-common.inc

Expand Down
2 changes: 2 additions & 0 deletions etc/xmms.profile
Expand Up @@ -6,12 +6,14 @@ include /etc/firejail/xmms.local
include /etc/firejail/globals.local

noblacklist ${HOME}/.xmms
noblacklist ${MUSIC}

include /etc/firejail/disable-common.inc
include /etc/firejail/disable-devel.inc
include /etc/firejail/disable-interpreters.inc
include /etc/firejail/disable-passwdmgr.inc
include /etc/firejail/disable-programs.inc
include /etc/firejail/disable-xdg.inc

caps.drop all
netfilter
Expand Down
3 changes: 3 additions & 0 deletions etc/xplayer.profile
Expand Up @@ -7,6 +7,8 @@ include /etc/firejail/globals.local

noblacklist ${HOME}/.config/xplayer
noblacklist ${HOME}/.local/share/xplayer
noblacklist ${MUSIC}
noblacklist ${VIDEOS}

# Allow python (blacklisted by disable-interpreters.inc)
noblacklist ${PATH}/python2*
Expand All @@ -19,6 +21,7 @@ include /etc/firejail/disable-devel.inc
include /etc/firejail/disable-interpreters.inc
include /etc/firejail/disable-passwdmgr.inc
include /etc/firejail/disable-programs.inc
include /etc/firejail/disable-xdg.inc

include /etc/firejail/whitelist-var-common.inc

Expand Down
3 changes: 2 additions & 1 deletion etc/xreader.profile
Expand Up @@ -7,13 +7,14 @@ include /etc/firejail/globals.local

noblacklist ${HOME}/.cache/xreader
noblacklist ${HOME}/.config/xreader
# noblacklist ${HOME}/.local/share
noblacklist ${DOCUMENTS}

include /etc/firejail/disable-common.inc
include /etc/firejail/disable-devel.inc
include /etc/firejail/disable-interpreters.inc
include /etc/firejail/disable-passwdmgr.inc
include /etc/firejail/disable-programs.inc
include /etc/firejail/disable-xdg.inc

# Breaks xreader on Mint 18.3
# include /etc/firejail/whitelist-var-common.inc
Expand Down
4 changes: 4 additions & 0 deletions etc/zart.profile
Expand Up @@ -5,11 +5,15 @@ include /etc/firejail/zart.local
# Persistent global definitions
include /etc/firejail/globals.local

noblacklist ${DOCUMENTS}
noblacklist ${PICTURES}

include /etc/firejail/disable-common.inc
include /etc/firejail/disable-devel.inc
include /etc/firejail/disable-interpreters.inc
include /etc/firejail/disable-passwdmgr.inc
include /etc/firejail/disable-programs.inc
include /etc/firejail/disable-xdg.inc

caps.drop all
ipc-namespace
Expand Down

0 comments on commit 3d81be9

Please sign in to comment.