# apparmor.d - Full set of apparmor profiles # Copyright (C) 2021 Alexandre Pujol # Copyright (C) 2022 Jeroen Rijken # SPDX-License-Identifier: GPL-2.0-only abi , include @{exec_path} = /{usr/,}{s,}bin/rngd profile rngd @{exec_path} { include include include include @{exec_path} mr, capability dac_read_search, capability sys_admin, capability sys_nice, network netlink raw, /etc/conf.d/rngd r, /etc/opensc.conf r, /etc/machine-id r, /var/lib/dbus/machine-id r, @{sys}/devices/virtual/misc/hw_random/rng_available r, @{PROC}/sys/kernel/random/poolsize r, @{PROC}/sys/kernel/random/write_wakeup_threshold rw, /dev/hwrng r, /dev/random w, include if exists }