feat(abs): add new shells abstraction.

This commit is contained in:
Alexandre Pujol 2024-03-29 18:31:15 +00:00
parent 58a4f1601a
commit adb936e62f
No known key found for this signature in database
GPG key ID: C5469996F0DF68EC
10 changed files with 28 additions and 20 deletions

View file

@ -18,9 +18,9 @@ include <tunables/global>
# of files.
profile default_user flags=(complain) {
include <abstractions/base>
include <abstractions/bash-strict>
include <abstractions/consoles>
include <abstractions/nameservice>
include <abstractions/nameservice-strict>
include <abstractions/shells>
deny capability sys_ptrace,
@ -38,9 +38,9 @@ profile default_user flags=(complain) {
# anywhere, and execute from some places.
profile confined_user flags=(complain) {
include <abstractions/base>
include <abstractions/bash-strict>
include <abstractions/consoles>
include <abstractions/nameservice>
include <abstractions/nameservice-strict>
include <abstractions/shells>
deny capability sys_ptrace,