# apparmor.d - Full set of apparmor profiles # Copyright (C) 2021-2024 Alexandre Pujol # SPDX-License-Identifier: GPL-2.0-only abi , include @{exec_path} = @{bin}/mono-sgen profile mono-sgen @{exec_path} { include include include include include include include network inet dgram, network inet6 dgram, network inet stream, network inet6 stream, network netlink raw, @{exec_path} mr, @{bin}/ r, /{usr/,}local/bin/ r, @{bin}/* rPUx, /usr/share/.mono/{,**} rw, /etc/mono/{,**} r, /etc/machine-id r, owner @{user_config_dirs}/openra/{,**} rw, owner @{user_config_dirs}/.mono/{,**} r, owner @{tmp}/*.* rw, owner @{tmp}/CASESENSITIVETEST* rw, owner /dev/shm/mono.* rw, owner @{PROC}/@{pid}/fd/ r, include if exists } # vim:syntax=apparmor