From fccd220bbe044fbaf24e069fb4b8d8a877f5b00d Mon Sep 17 00:00:00 2001 From: Gaming4JC Date: Fri, 23 Oct 2015 20:13:47 -0400 Subject: update firejail with hardening patches --- .../002-disable-common.inc-more-security.patch | 33 ++++++++++++++++++++++ 1 file changed, 33 insertions(+) create mode 100644 pcr/firejail/002-disable-common.inc-more-security.patch (limited to 'pcr/firejail/002-disable-common.inc-more-security.patch') diff --git a/pcr/firejail/002-disable-common.inc-more-security.patch b/pcr/firejail/002-disable-common.inc-more-security.patch new file mode 100644 index 000000000..91dd71dd0 --- /dev/null +++ b/pcr/firejail/002-disable-common.inc-more-security.patch @@ -0,0 +1,33 @@ +*** disable-common.inc 2015-09-27 13:04:49.000000000 -0400 +--- disable-common.inc.patched 2015-10-23 19:35:44.996798469 -0400 +*************** +*** 4,9 **** +--- 4,10 ---- + blacklist ${HOME}/.mozilla + blacklist ${HOME}/.icedove + blacklist ${HOME}/.thunderbird ++ blacklist ${HOME}/.sylpheed-2.0 + blacklist ${HOME}/.config/midori + blacklist ${HOME}/.config/opera + blacklist ${HOME}/.config/chromium +*************** +*** 13,20 **** +--- 14,31 ---- + blacklist ${HOME}/.local/share/systemd + + # Instant Messaging ++ blacklist ${HOME}/.config/hexchat ++ blacklist ${HOME}/.mcabber + blacklist ${HOME}/.purple + blacklist ${HOME}/.config/psi+ ++ blacklist ${HOME}/.retroshare ++ blacklist ${HOME}/.weechat ++ blacklist ${HOME}/.config/xchat ++ ++ # Cryptocoins ++ blacklist ${HOME}/.*coin ++ blacklist ${HOME}/.electrum* ++ blacklist ${HOME}/wallet.dat + + # VNC + blacklist ${HOME}/.remmina -- cgit v1.2.3-2-g168b