summaryrefslogtreecommitdiff
path: root/pcr/firejail/001-addmoresecurity-firefox.patch
diff options
context:
space:
mode:
Diffstat (limited to 'pcr/firejail/001-addmoresecurity-firefox.patch')
-rw-r--r--pcr/firejail/001-addmoresecurity-firefox.patch34
1 files changed, 34 insertions, 0 deletions
diff --git a/pcr/firejail/001-addmoresecurity-firefox.patch b/pcr/firejail/001-addmoresecurity-firefox.patch
new file mode 100644
index 000000000..0b8d764be
--- /dev/null
+++ b/pcr/firejail/001-addmoresecurity-firefox.patch
@@ -0,0 +1,34 @@
+*** firefox.profile 2015-07-02 06:53:18.000000000 -0400
+--- firefox-patched.profile 2015-08-21 22:14:06.891765532 -0400
+***************
+*** 2,9 ****
+ include /etc/firejail/disable-mgmt.inc
+ include /etc/firejail/disable-secret.inc
+ include /etc/firejail/disable-common.inc .mozilla
+ caps.drop all
+ seccomp
+ netfilter
+! noroot
+!
+--- 2,21 ----
+ include /etc/firejail/disable-mgmt.inc
+ include /etc/firejail/disable-secret.inc
+ include /etc/firejail/disable-common.inc .mozilla
++ blacklist ${HOME}/.bash_history
++ blacklist ${HOME}/.ssh
++ blacklist ${HOME}/.sylpheed-2.0
++ blacklist ${HOME}/.gnupg
++ blacklist ${HOME}/.mcabber
++ blacklist ${HOME}/.weechat
++ blacklist ${HOME}/.purple
++ blacklist ${HOME}/*.kdb
++ blacklist ${HOME}/*.dat
++ blacklist ${HOME}/*.key
++ blacklist ${HOME}/.electrum*
++ blacklist ${HOME}/.config/
++ blacklist ${HOME}/.zsh_history
+ caps.drop all
+ seccomp
+ netfilter
+! noroot
+\ No newline at end of file