/etc/firejail/login.users file describes additional arguments passed to firejail executable upon user logging into a Firejail restricted shell. Each user entry in the file consists of a user name followed by the arguments passed to firejail. The format is as follows:

user_name: arguments


netblue:--net=none --protocol=unix

Wildcard patterns are accepted in the user name field:

user*: --private

Restricted Shell

To configure a restricted shell, replace /bin/bash with /usr/bin/firejail in /etc/passwd file for each user that needs to be restricted. Alternatively, you can specify /usr/bin/firejail  using adduser or usermod commands:

adduser --shell /usr/bin/firejail username
usermod --shell /usr/bin/firejail username




