From bb8a9fbae0c8534cabb24076f2fa9f29e4526cf4 Mon Sep 17 00:00:00 2001 From: Gaming4JC Date: Fri, 21 Aug 2015 22:35:30 -0400 Subject: updating firejail --- pcr/firejail/001-addmoresecurity-firefox.patch | 34 ++++++++++++++++++++++++++ 1 file changed, 34 insertions(+) create mode 100644 pcr/firejail/001-addmoresecurity-firefox.patch (limited to 'pcr/firejail/001-addmoresecurity-firefox.patch') diff --git a/pcr/firejail/001-addmoresecurity-firefox.patch b/pcr/firejail/001-addmoresecurity-firefox.patch new file mode 100644 index 000000000..0b8d764be --- /dev/null +++ b/pcr/firejail/001-addmoresecurity-firefox.patch @@ -0,0 +1,34 @@ +*** firefox.profile 2015-07-02 06:53:18.000000000 -0400 +--- firefox-patched.profile 2015-08-21 22:14:06.891765532 -0400 +*************** +*** 2,9 **** + include /etc/firejail/disable-mgmt.inc + include /etc/firejail/disable-secret.inc + include /etc/firejail/disable-common.inc .mozilla + caps.drop all + seccomp + netfilter +! noroot +! +--- 2,21 ---- + include /etc/firejail/disable-mgmt.inc + include /etc/firejail/disable-secret.inc + include /etc/firejail/disable-common.inc .mozilla ++ blacklist ${HOME}/.bash_history ++ blacklist ${HOME}/.ssh ++ blacklist ${HOME}/.sylpheed-2.0 ++ blacklist ${HOME}/.gnupg ++ blacklist ${HOME}/.mcabber ++ blacklist ${HOME}/.weechat ++ blacklist ${HOME}/.purple ++ blacklist ${HOME}/*.kdb ++ blacklist ${HOME}/*.dat ++ blacklist ${HOME}/*.key ++ blacklist ${HOME}/.electrum* ++ blacklist ${HOME}/.config/ ++ blacklist ${HOME}/.zsh_history + caps.drop all + seccomp + netfilter +! noroot +\ No newline at end of file -- cgit v1.2.3-54-g00ecf