[apparmor] capability ptrace not honored?

Malte Gell mailinglisten at posteo.de
Mon Oct 16 19:05:16 UTC 2017


Hello,

in a profile I have the following rule:

capability sys_ptrace,

But I still get this error message:

Profile: /usr/bin/foobar
Operation: ptrace
Denied: trace
Logfile: /var/log/audit/audit.log
(473 found, most recent from 'Mon Oct 16 20:57:56 2017')

Why doesn´t capability sys_ptrace, not work here?
Thanks!



More information about the AppArmor mailing list