2
0
mirror of https://gitlab.com/apparmor/apparmor synced 2025-08-21 17:47:10 +00:00

abstractions/libnuma: add rules for active usage

The current profile is for linking against libnuma. This
update adds the rules needed to get system information
when actually using libnuma functionality.

Signed-off-by: Christian Ehrhardt <christian.ehrhardt@canonical.com>
This commit is contained in:
Christian Ehrhardt 2025-08-13 10:39:49 +02:00
parent a8875460ed
commit 24216d79e9
No known key found for this signature in database
GPG Key ID: BA3E29338280B242

View File

@ -11,12 +11,20 @@
abi <abi/4.0>,
# this abstract profile can be included by applications that are
# dynamically linked to libnuma
# This abstract profile can be included by applications that are
# dynamically linked to libnuma.
# libnuma defines the function num_init() as the .init function
# to be called by the runtime linker (ld) when libnuma is loaded
# even if not any active usage of libnuma takes place
@{sys}/devices/system/cpu/node/ r,
# Actually using libnuma functionality will need a few more
# sysfs entries to gather information about the system
@{sys}/devices/system/cpu/ r,
@{sys}/devices/system/node/node[0-9]*/meminfo r,
@{sys}/devices/system/node/*/cpumap r,
# Include additions to the abstraction
include if exists <abstractions/libnuma.d>