[Bug 1564832] [NEW] Apparmor profile for NTPd needs to allow read/write access to /dev/ppsX

Mark Shuttleworth 1564832 at bugs.launchpad.net
Fri Apr 1 10:27:38 UTC 2016


Public bug reported:

Am trying to get NTP to work with the kernel PPS subsystem, for high-
accuracy GPS-based clocks. On startup of NTPd I see this:

Apr  1 11:18:58 doorway kernel: [  300.387443] audit: type=1400
audit(1459505938.042:9): apparmor="DENIED" operation="open"
profile="/usr/sbin/ntpd" name="/dev/pps0" pid=1668 comm="ntpd"
requested_mask="wr" denied_mask="wr" fsuid=0 ouid=0

Adding this to the usr.sbin.ntpd apparmor profile eliminated the error:

  /dev/pps[0-9]* rw,


I'm not sure why ntpd needs *write* access to ppsN though, perhaps that can be improved.

** Affects: ntp (Ubuntu)
     Importance: Undecided
         Status: New

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to ntp in Ubuntu.
https://bugs.launchpad.net/bugs/1564832

Title:
  Apparmor profile for NTPd needs to allow read/write access to
  /dev/ppsX

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/ntp/+bug/1564832/+subscriptions



More information about the Ubuntu-server-bugs mailing list