feat(profile): general update.

This commit is contained in:
Alexandre Pujol 2024-03-05 18:00:36 +00:00
parent 70963a50b6
commit ff849b9f09
No known key found for this signature in database
GPG key ID: C5469996F0DF68EC
17 changed files with 104 additions and 91 deletions

View file

@ -88,19 +88,13 @@ profile tailscaled @{exec_path} flags=(attach_disconnected) {
profile systemctl {
include <abstractions/base>
include <abstractions/systemctl>
capability mknod,
capability net_admin,
network netlink raw,
ptrace (read),
@{bin}/systemctl mr,
@{PROC}/ r,
@{PROC}/@{pid}/fd/ r,
/dev/net/tun rw,
include if exists <local/tailscaled_systemctl>