[apparmor] mount rule question

Seth Arnold seth.arnold at gmail.com
Sat Mar 10 01:07:39 UTC 2012


That's tough; from consistency with "file" I might say yes, and I might think that any mount the application does it should be able to undo, but I wouldn't want calibre or whatever app winds up doing the ereader mounts on its behalf to be able to unmount backup storage or network mounts or per-user polyinstantiated mounts...

I think I'd rather see two rules.

------Original Message------
From: John Johansen
Sender: apparmor-bounces at lists.ubuntu.com
To: apparmor
Subject: [apparmor] mount rule question
Sent: Mar 9, 2012 3:23 PM

should the rule

  mount,

which allows all mounts also allow umount,

If so should umount as a mount option as an optional umount rule that is

  mount option=umount,
is the same as
  umount,

and if so, should
  mount -> /foo,

also allow umount


-- 
AppArmor mailing list
AppArmor at lists.ubuntu.com
Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/apparmor





More information about the AppArmor mailing list