remove firejail generic.profile

include the appropriate files instead
This commit is contained in:
Pig Monkey 2017-07-29 16:11:31 -07:00
parent e2aed9edd7
commit 8d499dc7f7
8 changed files with 10 additions and 30 deletions

View file

@ -1,4 +1,5 @@
include /usr/local/etc/firejail/generic.profile
include /etc/firejail/default.profile
include /etc/firejail/disable-devel.inc
private-dev
private-etc firejail,passwd,group,hostname,hosts,nsswitch.conf,resolv.conf,gtk-2.0,gtk-3.0,fonts,mime.types

View file

@ -1,18 +0,0 @@
# Passwords
blacklist ${HOME}/.password-store
blacklist ${HOME}/.keys
# Ledger
blacklist ${HOME}/ledger
blacklist ${HOME}/library/ledger
# Mail
blacklist ${HOME}/.offlineimaprc
blacklist ${HOME}/.offlineimap
blacklist ${HOME}/.mbsyncrc
# PIM
blacklist ${HOME}/.config/vdirsyncer
blacklist ${HOME}/.vdirsyncer
blacklist ${HOME}/.contacts
blacklist ${HOME}/.calendars

View file

@ -1,2 +0,0 @@
include /etc/firejail/default.profile
include /etc/firejail/disable-devel.inc

View file

@ -21,8 +21,3 @@
state=present
line="blacklist {{ item }}"
with_items: "{{ firejail.blacklist }}"
- name: Push generic firejail profile
copy: src=generic.profile dest=/usr/local/etc/firejail/generic.profile
notify:
- activate firejail profiles

View file

@ -1,4 +1,5 @@
include /usr/local/etc/firejail/generic.profile
include /etc/firejail/default.profile
include /etc/firejail/disable-devel.inc
whitelist ~/.ncmpcpp
whitelist ~/audio

View file

@ -1,4 +1,5 @@
include /usr/local/etc/firejail/generic.profile
include /etc/firejail/default.profile
include /etc/firejail/disable-devel.inc
private-etc firejail,group,hosts,nsswitch.conf,resolv.conf,asound.conf,pulse,ssl,ca-certificates
private-tmp

View file

@ -1,4 +1,5 @@
include /usr/local/etc/firejail/generic.profile
include /etc/firejail/default.profile
include /etc/firejail/disable-devel.inc
whitelist ~/.config/redshift.conf
net none

View file

@ -1,4 +1,5 @@
include /usr/local/etc/firejail/generic.profile
include /etc/firejail/default.profile
include /etc/firejail/disable-devel.inc
private-dev
private-etc firejail