Skip to content

Commit

Permalink
apparmor: ubuntu_pro_esm_cache: comment about /bin/ps
Browse files Browse the repository at this point in the history
  • Loading branch information
panlinux committed Mar 26, 2024
1 parent e68d082 commit 919400d
Showing 1 changed file with 2 additions and 0 deletions.
2 changes: 2 additions & 0 deletions debian/apparmor/ubuntu_pro_esm_cache.jinja2
Original file line number Diff line number Diff line change
Expand Up @@ -41,6 +41,7 @@ profile ubuntu_pro_esm_cache flags=(attach_disconnected) {
/usr/bin/uname mrix,

/usr/bin/cloud-id Cx -> cloud_id,
# in bionic, it's /bin/ps, so let's match both
/{,usr/}bin/ps Cx -> ps,
/usr/bin/systemd-detect-virt Px -> ubuntu_pro_esm_cache_systemd_detect_virt,
/usr/bin/dpkg Cx -> dpkg,
Expand Down Expand Up @@ -89,6 +90,7 @@ profile ubuntu_pro_esm_cache flags=(attach_disconnected) {
capability sys_ptrace,
ptrace read,

# in bionic, it's /bin/ps, so let's match both
/{,usr/}bin/ps mrix,

/dev/tty r,
Expand Down

0 comments on commit 919400d

Please sign in to comment.