[apparmor] [Patch] Fix parser -N command

John Johansen john.johansen at canonical.com
Thu Aug 9 22:05:48 UTC 2012


Fix the apparmor_parsers -N command (which dumps the list of profile
names found in a policy file) to be available without privilege and
also make it be recognized as a command instead of an option so that
it can conflict with -a -r -R -S and -o.

Currently it can be specified with these commands but will cause the
parser to short circuit just dumping the names and not doing the actual
profile compile or load.

Signed-off-by: John Johansen <john.johansen at canonical.com>

---

=== modified file 'parser/parser_main.c'
--- parser/parser_main.c	2012-08-09 07:37:25 +0000
+++ parser/parser_main.c	2012-08-09 22:00:03 +0000
@@ -456,8 +456,10 @@
 		skip_cache = 1;
 		break;
 	case 'N':
+		count++;
 		names_only = 1;
 		skip_cache = 1;
+		kernel_load = 0;
 		break;
 	case 'S':
 		count++;




More information about the AppArmor mailing list