feat(profiles): general update.

This commit is contained in:
Alexandre Pujol 2023-10-08 14:00:21 +01:00
parent 958cc671b2
commit b5fbef8eef
No known key found for this signature in database
GPG key ID: C5469996F0DF68EC
17 changed files with 62 additions and 82 deletions

View file

@ -17,6 +17,8 @@ profile mkinitcpio @{exec_path} flags=(attach_disconnected) {
capability sys_admin,
capability sys_chroot,
network unix stream,
@{exec_path} rmix,
@{bin}/{,ba}sh rix,
@ -117,7 +119,6 @@ profile mkinitcpio @{exec_path} flags=(attach_disconnected) {
deny /apparmor/.null rw,
deny network inet stream,
deny network inet6 stream,
deny unix (receive) type=stream,
include if exists <local/mkinitcpio>
}

View file

@ -159,7 +159,6 @@ profile pacman @{exec_path} {
# Silencer,
deny @{HOME}/ r,
deny /tmp/ r,
deny unix (receive) type=stream,
profile gpg {
include <abstractions/base>