diff --git a/profiles/apparmor.d/abstractions/libnuma b/profiles/apparmor.d/abstractions/libnuma index ea80cfdcc..9f761b130 100644 --- a/profiles/apparmor.d/abstractions/libnuma +++ b/profiles/apparmor.d/abstractions/libnuma @@ -11,12 +11,20 @@ abi , - # this abstract profile can be included by applications that are - # dynamically linked to libnuma + # This abstract profile can be included by applications that are + # dynamically linked to libnuma. + # libnuma defines the function num_init() as the .init function # to be called by the runtime linker (ld) when libnuma is loaded + # even if not any active usage of libnuma takes place @{sys}/devices/system/cpu/node/ r, + # Actually using libnuma functionality will need a few more + # sysfs entries to gather information about the system + @{sys}/devices/system/cpu/ r, + @{sys}/devices/system/node/node[0-9]*/meminfo r, + @{sys}/devices/system/node/*/cpumap r, + # Include additions to the abstraction include if exists