feat(profiles): use /etc read only variable: etc_ro

This commit is contained in:
Alexandre Pujol 2023-02-04 23:34:29 +00:00
parent 6e56cfccc9
commit bac87f9547
No known key found for this signature in database
GPG key ID: C5469996F0DF68EC
19 changed files with 33 additions and 32 deletions

View file

@ -96,14 +96,14 @@ profile lightdm @{exec_path} {
@{run}/lightdm.pid rw,
@{PROC}/1/limits r,
/etc/security/limits.d/ r,
@{etc_ro}/security/limits.d/ r,
owner @{PROC}/@{pid}/uid_map r,
owner @{PROC}/@{pid}/loginuid rw,
owner @{PROC}/@{pid}/fd/ r,
@{PROC}/cmdline r,
/etc/environment r,
@{etc_ro}/environment r,
/etc/default/locale r,
/dev/tty[0-9]* r,

View file

@ -37,12 +37,12 @@ profile login @{exec_path} flags=(complain) {
/{usr/,}bin/{,z,ba,da}sh rUx,
/etc/default/locale r,
/etc/environment r,
@{etc_ro}/environment r,
/etc/legal r,
/etc/motd r,
/etc/security/group.conf r,
/etc/security/limits.conf r,
/etc/security/limits.d/{,*} r,
@{etc_ro}/security/limits.d/{,*} r,
/etc/security/pam_env.conf r,
/etc/shells r,