forked from I2P_Developers/i2p.i2p
remove unneeded user-tmp abstraction; tighten tmpdir perms
This commit is contained in:
6
debian/apparmor/i2p
vendored
6
debian/apparmor/i2p
vendored
@@ -5,7 +5,6 @@
|
|||||||
#include <abstractions/fonts>
|
#include <abstractions/fonts>
|
||||||
#include <abstractions/nameservice>
|
#include <abstractions/nameservice>
|
||||||
#include <abstractions/ssl_certs>
|
#include <abstractions/ssl_certs>
|
||||||
#include <abstractions/user-tmp>
|
|
||||||
|
|
||||||
network inet stream,
|
network inet stream,
|
||||||
network inet6 stream,
|
network inet6 stream,
|
||||||
@@ -51,8 +50,9 @@
|
|||||||
/usr/share/java/wrapper*.jar r,
|
/usr/share/java/wrapper*.jar r,
|
||||||
|
|
||||||
# 'm' is needed by the I2P-Bote plugin
|
# 'm' is needed by the I2P-Bote plugin
|
||||||
/{,var/}tmp/ rwm,
|
/{,lib/live/mount/overlay/}tmp/ rwm,
|
||||||
owner /{,var/}tmp/** rwklm,
|
owner /{,lib/live/mount/overlay/}tmp/i2p-daemon/ rwm,
|
||||||
|
owner /{,lib/live/mount/overlay/}tmp/i2p-daemon/** rwklm,
|
||||||
|
|
||||||
# Prevent spamming the logs
|
# Prevent spamming the logs
|
||||||
deny /dev/tty rw,
|
deny /dev/tty rw,
|
||||||
|
Reference in New Issue
Block a user