# apparmor.d - Full set of apparmor profiles # Copyright (C) 2019-2021 Mikhail Morfikov # Copyright (C) 2023-2024 Alexandre Pujol # SPDX-License-Identifier: GPL-2.0-only abi , include @{exec_path} = @{bin}/cfdisk profile cfdisk @{exec_path} { include include capability sys_admin, @{exec_path} mr, /etc/fstab r, # A place for backups owner @{HOME}/**.{bak,back} rwk, owner @{MOUNTS}/**.{bak,back} rwk, # A place for file images owner @{user_img_dirs}/{,**} rwk, owner @{run}/blkid/blkid.tab{,-@{rand6}} rw, owner @{run}/blkid/blkid.tab.old rwl -> @{run}/blkid/blkid.tab, @{PROC}/partitions r, owner @{PROC}/@{pid}/mountinfo r, include if exists } # vim:syntax=apparmor