aboutsummaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorSilvio Rhatto <rhatto@riseup.net>2017-09-19 20:42:34 -0300
committerSilvio Rhatto <rhatto@riseup.net>2017-09-19 20:42:34 -0300
commit0d0af33515390a4143f3635e87b8f704427c1e54 (patch)
tree084f62833981d76a8ed2cadc83dfa55b113a0d68
parent94924bd7cecb8b04e67f4ee8f91caea231589cff (diff)
downloadxsession-0d0af33515390a4143f3635e87b8f704427c1e54.tar.gz
xsession-0d0af33515390a4143f3635e87b8f704427c1e54.tar.bz2
Firejail config moved to profile module
-rw-r--r--config.dot/firejail/git.profile.link39
-rw-r--r--config.dot/firejail/luakit.profile.link13
-rw-r--r--config.dot/firejail/mutt.profile.link46
3 files changed, 0 insertions, 98 deletions
diff --git a/config.dot/firejail/git.profile.link b/config.dot/firejail/git.profile.link
deleted file mode 100644
index e3cc87d..0000000
--- a/config.dot/firejail/git.profile.link
+++ /dev/null
@@ -1,39 +0,0 @@
-# git profile
-quiet
-noblacklist ~/.gitconfig
-noblacklist ~/.ssh
-noblacklist ~/.gnupg
-noblacklist ~/.emacs
-noblacklist ~/.emacs.d
-noblacklist ~/.viminfo
-noblacklist ~/.vim
-
-# allow git to work with some other configs
-noblacklist ${HOME}/.config/autostart
-noblacklist ${HOME}/.mutt
-noblacklist ${HOME}/.muttrc
-noblacklist /etc/ssh
-
-# custom
-noblacklist ~/.custom/gitconfig
-noblacklist ${PATH}/nc
-noblacklist /tmp/ssh-*
-
-include /etc/firejail/disable-common.inc
-include /etc/firejail/disable-programs.inc
-include /etc/firejail/disable-passwdmgr.inc
-
-# allow git to work with dotfiles
-read-write ${HOME}/.dotfiles
-
-caps.drop all
-netfilter
-nonewprivs
-noroot
-nogroups
-nosound
-protocol unix,inet,inet6
-seccomp
-shell none
-
-private-dev
diff --git a/config.dot/firejail/luakit.profile.link b/config.dot/firejail/luakit.profile.link
deleted file mode 100644
index 19ed543..0000000
--- a/config.dot/firejail/luakit.profile.link
+++ /dev/null
@@ -1,13 +0,0 @@
-# luakit profile
-
-#blacklist ${HOME}/.wine
-noblacklist ~/.config/luakit
-noblacklist ~/.local/share/luakit
-
-caps.drop all
-netfilter
-nonewprivs
-noroot
-protocol unix,inet,inet6
-seccomp
-shell none
diff --git a/config.dot/firejail/mutt.profile.link b/config.dot/firejail/mutt.profile.link
deleted file mode 100644
index 6225c83..0000000
--- a/config.dot/firejail/mutt.profile.link
+++ /dev/null
@@ -1,46 +0,0 @@
-# mutt email client profile
-
-noblacklist ~/.muttrc
-noblacklist ~/.mutt
-noblacklist ~/.mutt/muttrc
-noblacklist ~/.mailcap
-noblacklist ~/.gnupg
-noblacklist ~/.mail
-noblacklist ~/.Mail
-noblacklist ~/mail
-noblacklist ~/Mail
-noblacklist ~/sent
-noblacklist ~/postponed
-noblacklist ~/.cache/mutt
-noblacklist ~/.w3m
-noblacklist ~/.elinks
-noblacklist ~/.vim
-noblacklist ~/.vimrc
-noblacklist ~/.viminfo
-noblacklist ~/.emacs
-noblacklist ~/.emacs.d
-noblacklist ~/.signature
-noblacklist ~/.bogofilter
-
-# custom
-noblacklist ~/.custom
-noblacklist ~/.msmtprc
-noblacklist ~/.procmailrc
-noblacklist ~/.fetchmailrc
-
-include /etc/firejail/disable-common.inc
-include /etc/firejail/disable-programs.inc
-include /etc/firejail/disable-passwdmgr.inc
-include /etc/firejail/disable-devel.inc
-
-caps.drop all
-netfilter
-nogroups
-nonewprivs
-noroot
-nosound
-protocol unix,inet,inet6
-seccomp
-shell none
-
-private-dev