mirror of
https://gitlab.com/apparmor/apparmor
synced 2025-08-30 22:05:27 +00:00
fixes for abstractions from Mathias Gug
This commit is contained in:
12
profiles/apparmor.d/abstractions/nvidia
Normal file
12
profiles/apparmor.d/abstractions/nvidia
Normal file
@@ -0,0 +1,12 @@
|
|||||||
|
# vim:syntax=apparmor
|
||||||
|
# nvidia access requirements
|
||||||
|
|
||||||
|
# configuration queries
|
||||||
|
capability ipc_lock,
|
||||||
|
|
||||||
|
# device files
|
||||||
|
/dev/nvidia0 rw,
|
||||||
|
/dev/nvidiactl rw,
|
||||||
|
|
||||||
|
/proc/interrupts r,
|
||||||
|
/proc/sys/vm/max_map_count r,
|
5
profiles/apparmor.d/abstractions/orbit2
Normal file
5
profiles/apparmor.d/abstractions/orbit2
Normal file
@@ -0,0 +1,5 @@
|
|||||||
|
# vim:syntax=apparmor
|
||||||
|
# orbit2 permissions
|
||||||
|
|
||||||
|
# system library
|
||||||
|
/usr/lib/orbit-2.0/*.so mr,
|
@@ -1,3 +1,4 @@
|
|||||||
|
# vim:syntax=apparmor
|
||||||
# $Id$
|
# $Id$
|
||||||
# ------------------------------------------------------------------
|
# ------------------------------------------------------------------
|
||||||
#
|
#
|
||||||
@@ -18,3 +19,16 @@
|
|||||||
/usr/local/lib64/python2.[45]/site-packages/ r,
|
/usr/local/lib64/python2.[45]/site-packages/ r,
|
||||||
/usr/local/lib/python2.[45]/**.{egg,py,pyc,pth,so} mr,
|
/usr/local/lib/python2.[45]/**.{egg,py,pyc,pth,so} mr,
|
||||||
/usr/local/lib/python2.[45]/site-packages/ r,
|
/usr/local/lib/python2.[45]/site-packages/ r,
|
||||||
|
|
||||||
|
# Site-wide configuration
|
||||||
|
/etc/python2.[45]/site.py r,
|
||||||
|
|
||||||
|
# python-central paths
|
||||||
|
/usr/share/pycentral/** r,
|
||||||
|
/usr/share/python-support/** r,
|
||||||
|
/var/lib/python-support/** r,
|
||||||
|
/var/lib/python-support/**.so mr,
|
||||||
|
/usr/lib/python-support/**.so mr,
|
||||||
|
|
||||||
|
# wx paths
|
||||||
|
/usr/lib/wx/python/*.pth r,
|
||||||
|
6
profiles/apparmor.d/abstractions/video
Normal file
6
profiles/apparmor.d/abstractions/video
Normal file
@@ -0,0 +1,6 @@
|
|||||||
|
# vim:syntax=apparmor
|
||||||
|
# video device access
|
||||||
|
|
||||||
|
# System devices
|
||||||
|
/sys/class/video4linux r,
|
||||||
|
/sys/class/video4linux/** r,
|
Reference in New Issue
Block a user