[apparmor] [patch] ntpd needs read access to openssl.cnf

Kshitij Gupta kgupta8592 at gmail.com
Tue Sep 17 05:57:07 UTC 2013


Hello,

If you're fixing the profile, you might want to consider streamlining it.
The following rules are superfluous from the following includes:
@{PROC}/sys/kernel/ngroups_max, /etc/gai.conf
abstractions/base, abstractions/nameservice

Regards,

Kshitij Gupta


On 9/17/13, Christian Boltz <apparmor at cboltz.de> wrote:
> Hello,
>
> Am Montag, 16. September 2013 schrieb Steve Beattie:
>> On Mon, Sep 16, 2013 at 10:39:13PM +0200, Christian Boltz wrote:
>> > I just received the following patch and propose it for 2.8 and
>> > trunk:
>> >
>> > Patch-Author: Stefan Seyfried <seife+obs at b1-systems.com>
>> >
>> > After this change in ntp:
>> >
>> > * Mo Aug 19 2013 crrodriguez at opensuse.org
>> > - Build with -DOPENSSL_LOAD_CONF , ntp must respect and use
>> >
>> >   the system's openssl configuration.
>> >
>> > we need to read openssl.cnf or starting of ntpd will fail
>> > silently(!)
>
>> Though ntpd failing silently sounds like an ntpd bug to me.
>
> Indeed - I'll ask Seife if he can open a bugreport about it (probably in
> ntp upstream).
>
>
> Regards,
>
> Christian Boltz
> --
> Ich bin beeindruckt!
> Windows startet nicht mehr -> Problem gelöst.
> Ich wünschte, ich könnte meine Probleme auch so befriedigend lösen.
> [Sandy Drobic in suse-linux]
>
>
> --
> AppArmor mailing list
> AppArmor at lists.ubuntu.com
> Modify settings or unsubscribe at:
> https://lists.ubuntu.com/mailman/listinfo/apparmor
>



More information about the AppArmor mailing list