[apparmor] [profile] transmission-gtk, the encrypted data and requested/denied 'rwc'.

Jamie Strandboge jamie at canonical.com
Thu Jan 21 14:47:58 UTC 2016


On Thu, 2016-01-21 at 12:57 +0100, daniel curtis wrote:
> 
> > > A rule which should not create a DENIED entries in a log file
> owner @{PROC}/sys/kernel/random/uuid    r,
> 
If you remove 'owner', this should go away. Notice it is root owned:

$ ls -l /proc/sys/kernel/random/uuid 
-r--r--r-- 1 root root 0 Jan 21 08:45 /proc/sys/kernel/random/uuid

The denial in your logs will have mentioned something like: 'fsuid=1000
ouid=0' which indicates the issue. See man apparmor.d (look for fsuid)
for details.

-- 
Jamie Strandboge             | http://www.canonical.com

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 819 bytes
Desc: This is a digitally signed message part
URL: <https://lists.ubuntu.com/archives/apparmor/attachments/20160121/1d1523c3/attachment.pgp>


More information about the AppArmor mailing list