/run -> @{run}, [0-9]* -> @{uid}.

This commit is contained in:
Alexandre Pujol 2021-10-07 14:52:41 +01:00
parent 9c8c2144b8
commit 2fc138a4d7
No known key found for this signature in database
GPG key ID: C5469996F0DF68EC
15 changed files with 35 additions and 35 deletions

View file

@ -77,9 +77,9 @@ profile spacefm @{exec_path} {
/root/ r,
/root/** r,
owner /root/** rw,
/run/ r,
/run/** r,
owner /run/** rw,
@{run}/ r,
@{run}/** r,
owner @{run}/** rw,
/srv/ r,
/srv/** r,
owner /srv/** rw,

View file

@ -48,7 +48,7 @@ include <tunables/global>
# Uncomment the two following lines if you want to allow Pidgin to update
# any DConf setting:
# owner @{HOME}/.{cache,config}/dconf/user rw,
# owner /{,var/}run/user/[0-9]*/dconf/user rwk,
# owner /{,var/}run/user/@{uid}/dconf/user rwk,
/{usr/,}bin/dash rix,
/{usr/,}bin/which rix,

View file

@ -47,9 +47,9 @@
# Allow usage of openat with O_TMPFILE
owner @{HOME}/#[0-9]*[0-9] m,
owner /{,var/}run/user/*/dconf/user w,
owner /{,var/}run/user/*/at-spi2-*/ rw,
owner /{,var/}run/user/*/at-spi2-*/** rw,
owner /{,var/}run/user/@{uid}/dconf/user w,
owner /{,var/}run/user/@{uid}/at-spi2-*/ rw,
owner /{,var/}run/user/@{uid}/at-spi2-*/** rw,
/sys/devices/pci[0-9]*/**/config r,
/sys/devices/pci[0-9]*/**/{,subsystem_}{device,vendor} r,

View file

@ -50,7 +50,7 @@
# CUPS is of systemd service type "notify" now, meaning that cupsd notifies
# systemd when it is up and running, give CUPS access to systemd's
# notification socket
/run/systemd/notify w,
@{run}/systemd/notify w,
/{usr/,}bin/bash ixr,
/{usr/,}bin/dash ixr,