-
Notifications
You must be signed in to change notification settings - Fork 2
/
qq.profile
68 lines (50 loc) · 1.6 KB
/
qq.profile
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
# Firejail profile for qq
# Description: Firejail profile for qq nt
whitelist ${HOME}/Pictures
noblacklist ${HOME}/Pictures
whitelist ${HOME}/Downloads
include linuxqq.local
include allow-bin-sh.inc
include disable-shell.inc
caps.drop all
ignore apparmor
noprinters
nonewprivs
noroot
notv
nou2f
protocol unix,inet,inet6,netlink
seccomp !chroot
disable-mnt
private-opt QQ
private-tmp
private-etc alsa,alternatives,ca-certificates,crypto-policies,fonts,group,host.conf,hostname,hosts,ld.so.cache,ld.so.preload,localtime,login.defs,machine-id,nsswitch.conf,os-release,passwd,pki,pulse,resolv.conf,ssl,xdg
noblacklist ${HOME}/.config/QQ
noblacklist ${HOME}/.config/tencent-qq
noblacklist ${HOME}/.mozilla
mkdir ${HOME}/.config/QQ
mkdir ${HOME}/.config/tencent-qq
whitelist ${HOME}/.config/QQ
whitelist ${HOME}/.config/tencent-qq
whitelist ${HOME}/.config/pulse
whitelist ${HOME}/.fonts.conf.d
read-only ${HOME}/.fonts.conf.d
whitelist ${HOME}/.fonts.conf
read-only ${HOME}/.fonts.conf
whitelist ${HOME}/.local/share/fonts
read-only ${HOME}/.local/share/fonts
whitelist ${HOME}/.fonts
read-only ${HOME}/.fonts
whitelist ${HOME}/.mozilla/firefox/profiles.ini
read-only ${HOME}/.mozilla/firefox/profiles.ini
dbus-user filter
dbus-user.talk org.freedesktop.Notifications
dbus-user.talk org.freedesktop.portal.Desktop
dbus-user.talk org.freedesktop.portal.Fcitx
dbus-user.talk org.freedesktop.portal.IBus
dbus-user.talk org.freedesktop.ScreenSaver
dbus-user.talk org.gnome.Mutter.IdleMonitor
?ALLOW_TRAY: dbus-user.talk org.kde.StatusNotifierWatcher
dbus-user.talk org.mozilla.*
ignore dbus-user none
include electron.profile