[apparmor] PulseAudio profile: sys_ptrace, ptrace, 'rwcdmr' denied masks and example rules.

daniel curtis sidetripping at gmail.com
Thu Aug 11 17:59:32 UTC 2016


Hi Simon.

Yes, I've noticed an "official" PulseAudio profile (I even use this profile
as a source etc.), but there is one thing, which seems to be important:
lacks of some directories, files, that are included, as rules, in an
"official" profile. I've mentioned about it in my first mail. An example:

PulseAudio "official" profile (e.g. from 14.04 or 16.04 releases etc.)
contains a few rules for a '/run/pulse/' directory, but in my case there is
no such place (I mean my system) [1]. The only difference between 14.04 and
16.04 releases - I mean PulseAudio profile - is one word:

/run/pulse/ rw,   # 12.04 and 14.04 releases version
owner /run/pulse/ rw,  # 16.04 release version

If it is about files: profile contain one rule related with
'@{HOME}/.esd_auth' file. But ls(1) command shows that there is no such
file (in user home directory). I don't know if it is normal behavior or
not.

As I mentioned earlier. I will read more articles etc. and try once again
or make some changes to the existing profile. In case of any doubts I will
write an email.

Best regards.
_____________
[1] top(1) command shows that pulseaudio is an active task.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.ubuntu.com/archives/apparmor/attachments/20160811/dc851eee/attachment.html>


More information about the AppArmor mailing list