diff --git a/apparmor.d/groups/systemd/systemd-sysusers b/apparmor.d/groups/systemd/systemd-sysusers index 8f5afd5a8..3b0a93704 100644 --- a/apparmor.d/groups/systemd/systemd-sysusers +++ b/apparmor.d/groups/systemd/systemd-sysusers @@ -39,6 +39,10 @@ profile systemd-sysusers @{exec_path} flags=(attach_disconnected) { /etc/.#{group,gshadow}[0-9a-zA-Z]* rw, /etc/.pwd.lock rwk, + /dev/tty[0-9]* rw, + owner /dev/pts/[0-9]* rw, + + # Inherit Silencer deny network inet6 stream, deny network inet stream,