[Ubuntu-phone] Can we make renames work?

Oliver Grawert ogra at ubuntu.com
Thu May 21 10:54:51 UTC 2015


hi,
Am Donnerstag, den 21.05.2015, 12:16 +0200 schrieb Martin Pitt:
> Oliver Grawert [2015-05-20 17:22 +0200]:

> > couldn't we do something with ACLs here ... leave the dirs writeable,
> > apply a read only ACL setup to all files with a small set of
> > exceptions ?
> 
> Yes, I like that idea. AppArmor is a lot simpler to grok and maintain
> (globs!) than bind mount farms ;-) With a "pristine" /usr/share/etc/
> we can even autogenerate this.
> 

well, i meant more with not moving any files around at all but keep /etc
as is and writable and then apply an "ACL mask" (or apparmor profile) to
the content to allow write access for some of the files ...

ciao
	oli




More information about the snappy-devel mailing list