make polymc firejail config more restrictive

This commit is contained in:
LordMZTE 2023-06-10 14:30:09 +02:00
parent 4e18fee757
commit 69a92fd2bb
Signed by: LordMZTE
GPG key ID: B64802DC33A64FF6

View file

@ -1,7 +1,28 @@
include whitelist-common.inc
dbus-user filter
dbus-user.talk com.feralinteractive.GameMode
dbus-system none
mkdir ~/.local/share/PolyMC
mkdir ~/.config/PolyMC
whitelist ~/.local/share/PolyMC
whitelist ~/.config/PolyMC
caps.drop all
netfilter
nodvd
nogroups
noinput
nonewprivs
noroot
notv
nou2f
novideo
protocol unix,inet,inet6
disable-mnt
private-dev
private-tmp
<% opt.getDeviceConf "polymc-firejail.profile" %>