# apparmor.d - Full set of apparmor profiles # Copyright (C) 2021 Alexandre Pujol # SPDX-License-Identifier: GPL-2.0-only abi , include @{exec_path} = /{usr/,}bin/dbus-run-session profile dbus-run-session @{exec_path} { include include signal (receive) set=(term, kill, hup) peer=gdm*, signal (send) set=term peer=dbus-daemon, @{exec_path} mr, /{usr/,}bin/dbus-daemon rPx, /{usr/,}bin/gnome-session rix, /{usr/,}bin/gnome-shell rPx, /{usr/,}bin/gsettings rix, @{libexec}/gnome-session-binary rPx, /usr/share/glib-2.0/schemas/gschemas.compiled r, /usr/share/gdm/greeter-dconf-defaults r, /usr/share/dconf/profile/gdm r, /var/lib/gdm/.config/dconf/user r, /var/lib/gdm/.cache/dconf/ rw, owner @{PROC}/@{pid}/fd/ r, # file_inherit /dev/tty rw, /dev/tty[0-9]* rw, include if exists }