# apparmor.d - Full set of apparmor profiles # Copyright (C) 2021 Alexandre Pujol # SPDX-License-Identifier: GPL-2.0-only abi , include @{exec_path} = /{usr/,}bin/mono-sgen profile mono-sgen @{exec_path} { include include include include include include include include include network inet dgram, network inet6 dgram, network inet stream, network inet6 stream, network netlink raw, @{exec_path} mr, /{usr/,}bin/ r, /{usr/,}local/bin/ r, /{usr/,}bin/* rPUx, /usr/share/.mono/{,**} rw, /etc/mono/{,**} r, /etc/machine-id r, owner @{user_config_dirs}/openra/{,**} rw, owner @{user_config_dirs}/.mono/{,**} r, owner @{run}/user/@{uid}/.mutter-Xwaylandauth.* rw, owner /tmp/*.* rw, owner /tmp/CASESENSITIVETEST* rw, owner /dev/shm/mono.* rw, @{sys}/devices/pci[0-9]*/**/uevent r, @{sys}/devices/pci[0-9]*/**/vendor r, @{sys}/devices/pci[0-9]*/**/device r, @{sys}/devices/pci[0-9]*/**/subsystem_vendor r, @{sys}/devices/pci[0-9]*/**/subsystem_device r, owner @{PROC}/@{pid}/fd/ r, include if exists }