Update profiles.

This commit is contained in:
Alexandre Pujol 2021-06-12 15:21:16 +01:00
parent 4ee6cc9657
commit 6bbe50573b
No known key found for this signature in database
GPG key ID: C5469996F0DF68EC
5 changed files with 14 additions and 3 deletions

View file

@ -9,7 +9,8 @@ include <tunables/global>
@{exec_path} = /{usr/,}bin/paccache
profile paccache @{exec_path} {
include <abstractions/base>
include <abstractions/nameservice-strict>
capability dac_read_search,
capability mknod,

View file

@ -12,11 +12,12 @@ profile systemd-tmpfiles @{exec_path} {
include <abstractions/systemd-common>
include <abstractions/nameservice-strict>
capability chown,
capability dac_read_search,
capability net_admin,
capability fowner,
capability fsetid,
capability mknod,
capability fowner,
capability net_admin,
@{exec_path} mr,