[Bug 1805178] Re: Apparmor should include letsencrypt directory for Slapd

Andreas Hasenack andreas at canonical.com
Thu Nov 29 18:42:50 UTC 2018


Thanks for filing this bug in Ubuntu.

First, let me suggest that any local modifications to apparmor profiles
be made in /etc/apparmor.d/local instead of the profile in
/etc/apparmor.d, otherwise you will get dpkg conf prompts with every
upgrade. For slapd, for example, you have
/etc/apparmor.d/local/usr.sbin.slapd

Second, what is the structure of files and directories in
/etc/letsencrypt? Is it separated by user, service, or do all certs go
in there? It would be good if we could come up with a rule that's a bit
more specific.

** Changed in: openldap (Ubuntu)
       Status: New => Incomplete

-- 
You received this bug notification because you are a member of Ubuntu
Server, which is subscribed to openldap in Ubuntu.
https://bugs.launchpad.net/bugs/1805178

Title:
  Apparmor should include letsencrypt directory for Slapd

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/openldap/+bug/1805178/+subscriptions



More information about the Ubuntu-server-bugs mailing list