]> gitweb.fluxo.info Git - rhatto/dotfiles/xsession.git/commitdiff
Adds custom git profile
authorSilvio Rhatto <rhatto@riseup.net>
Sat, 16 Sep 2017 23:18:39 +0000 (20:18 -0300)
committerSilvio Rhatto <rhatto@riseup.net>
Sat, 16 Sep 2017 23:18:39 +0000 (20:18 -0300)
config.dot/firejail/git.profile.link [new file with mode: 0644]

diff --git a/config.dot/firejail/git.profile.link b/config.dot/firejail/git.profile.link
new file mode 100644 (file)
index 0000000..1521c6b
--- /dev/null
@@ -0,0 +1,33 @@
+# git profile
+quiet
+noblacklist ~/.gitconfig
+noblacklist ~/.ssh
+noblacklist ~/.gnupg
+noblacklist ~/.emacs
+noblacklist ~/.emacs.d
+noblacklist ~/.viminfo
+noblacklist ~/.vim
+
+# custom
+noblacklist ~/.custom/gitconfig
+noblacklist ${PATH}/nc
+noblacklist /tmp/ssh-*
+
+include /etc/firejail/disable-common.inc
+include /etc/firejail/disable-programs.inc
+include /etc/firejail/disable-passwdmgr.inc
+
+# allow git to work with dotfiles
+read-write ${HOME}/.dotfiles
+
+caps.drop all
+netfilter
+nonewprivs
+noroot
+nogroups
+nosound
+protocol unix,inet,inet6
+seccomp
+shell none
+
+private-dev