[apparmor] [SOLVED] Re: Bluetooth raw socket?

Aaron Lewis the.warl0ck.1989 at gmail.com
Wed Jan 9 01:37:29 UTC 2013


Thanks, that worked

On Wed, Jan 9, 2013 at 9:21 AM, John Johansen
<john.johansen at canonical.com> wrote:
> On 01/08/2013 04:58 PM, Aaron Lewis wrote:
>> Hi,
>>
>> Looks like raw socket itself doesn't include bluetooth socket,
>>
>>       capability net_raw,
>>       network packet raw,
>>
> hrmm, I would need to check the kernel code but I think bluetooth
> does check capability net_raw. That would mean apparmor would
> require it as well but it is only part of what is needed to grant
> permission to the bluetooth raw socket.
>
> you will also need
>   network bluetooth,
>
> or
>   network bluetooth raw,
>
>
>> And I got log:
>>
>> [ 3860.636975] type=1400 audit(1357692729.070:203): apparmor="DENIED"
>> operation="create" parent=17667 profile="/usr/bin/wireshark" pid=17677
>> comm="dumpcap" family="bluetooth" sock_type="raw" protocol=1
>>
>> Wireshark doesn't run dumpcap ..
>>
>> Thanks!
>>
>



-- 
Best Regards,
Aaron Lewis - PGP: 0xDFE6C29E ( http://keyserver.veridis.com )
Finger Print: 9482 448F C7C3 896C 1DFE 7DD3 2492 A7D0 DFE6 C29E



More information about the AppArmor mailing list