feat(profile): initial integration with attached path.

The feature is not yet enabled.

See https://apparmor.pujol.io/development/internal/#re-attached-path
This commit is contained in:
Alexandre Pujol 2024-10-11 14:13:17 +01:00
parent 5bf8c6ef0f
commit 61a27bc336
No known key found for this signature in database
GPG key ID: C5469996F0DF68EC
85 changed files with 164 additions and 139 deletions

View file

@ -9,14 +9,13 @@ include <tunables/global>
@{exec_path} = @{bin}/xbrlapi
profile xbrlapi @{exec_path} flags=(attach_disconnected) {
include <abstractions/base>
include <abstractions/attached/consoles>
network inet stream,
network inet6 stream,
@{exec_path} mr,
/dev/tty@{int} rw,
include if exists <local/xbrlapi>
}