feat(profile): general update.

This commit is contained in:
Alexandre Pujol 2023-12-08 18:01:39 +00:00
parent 52e52f06db
commit d81bce5559
No known key found for this signature in database
GPG key ID: C5469996F0DF68EC
32 changed files with 114 additions and 135 deletions

View file

@ -14,11 +14,6 @@ profile spice-vdagentd @{exec_path} flags=(attach_disconnected) {
capability sys_nice,
dbus receive bus=system path=/org/freedesktop/login1/session/*
interface=org.freedesktop.login1.Session
member=Unlock
peer=(name=:*, label=systemd-logind),
@{exec_path} mr,
owner @{run}/spice-vdagentd/spice-vdagent-sock r,

View file

@ -95,6 +95,7 @@ profile sudo @{exec_path} {
/dev/ r, # interactive login
/dev/ptmx rwk,
owner /dev/tty rwk,
owner /dev/tty@{int} rw,
deny @{user_share_dirs}/gvfs-metadata/* r,

View file

@ -39,6 +39,7 @@ profile vipw-vigr @{exec_path} {
profile editor {
include <abstractions/base>
include <abstractions/fzf>
include <abstractions/nameservice-strict>
capability fsetid,
@ -54,9 +55,6 @@ profile vipw-vigr @{exec_path} {
/etc/vim/{,**} r,
owner @{HOME}/.viminfo{,.tmp} rw,
owner @{HOME}/.fzf/plugin/ r,
owner @{HOME}/.fzf/plugin/fzf.vim r,
/etc/{passwd,shadow,gshadow,group}.edit rw,
}

View file

@ -76,11 +76,6 @@ profile vlc @{exec_path} {
member={Get,GetAll}
peer=(name=:*),
dbus send bus=session path=/ScreenSaver
interface=org.freedesktop.ScreenSaver
member={Inhibit,UnInhibit}
peer=(name=org.freedesktop.ScreenSaver),
dbus send bus=session path=/MenuBar
interface=com.canonical.dbusmenu
member={LayoutUpdated,ItemsPropertiesUpdated}