From c63d37f19335b05ac4a0da6aed21d2d6bac5926e Mon Sep 17 00:00:00 2001 From: Jorge Sancho Larraz Date: Thu, 7 Nov 2024 11:41:10 +0100 Subject: [PATCH] profiles/*frr*: add owner to @{PROC}/@{pid}/task/@{tid}/comm rw, --- profiles/apparmor.d/usr.lib.frr.bgpd | 2 +- profiles/apparmor.d/usr.lib.frr.staticd | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/profiles/apparmor.d/usr.lib.frr.bgpd b/profiles/apparmor.d/usr.lib.frr.bgpd index 1481583df..2b4a8817e 100644 --- a/profiles/apparmor.d/usr.lib.frr.bgpd +++ b/profiles/apparmor.d/usr.lib.frr.bgpd @@ -24,7 +24,7 @@ profile bgpd /usr/lib/frr/bgpd flags=(attach_disconnected) { /etc/services r, @{run}/netns/* r, - @{PROC}/@{pid}/task/@{tid}/comm rw, + owner @{PROC}/@{pid}/task/@{tid}/comm rw, # Site-specific additions and overrides. See local/README for details. include if exists diff --git a/profiles/apparmor.d/usr.lib.frr.staticd b/profiles/apparmor.d/usr.lib.frr.staticd index 16cb609bd..34ef1ec12 100644 --- a/profiles/apparmor.d/usr.lib.frr.staticd +++ b/profiles/apparmor.d/usr.lib.frr.staticd @@ -19,7 +19,7 @@ profile staticd /usr/lib/frr/staticd flags=(attach_disconnected) { /etc/frr/zebra.conf r, - @{PROC}/@{pid}/task/@{tid}/comm rw, + owner @{PROC}/@{pid}/task/@{tid}/comm rw, @{PROC}/sys/net/core/somaxconn r, # Site-specific additions and overrides. See local/README for details.