Update/Add Additional Abstractions for AppArmor

This commit is contained in:
Thomas Ward 2024-10-05 10:14:32 +00:00 committed by asciiwolf
parent 8761fed197
commit e049fdcc76

View File

@ -11,6 +11,8 @@ profile torbrowser_firefox @{torbrowser_firefox_executable} {
#include <abstractions/mesa>
#include <abstractions/opencl>
#include if exists <abstractions/vulkan>
#include if exists <abstractions/dbus-session>
#include if exists <abstractions/X>
deny capability sys_ptrace,
@ -26,6 +28,9 @@ profile torbrowser_firefox @{torbrowser_firefox_executable} {
network netlink raw,
network tcp,
# ibus socket
owner @{HOME}/.cache/ibus/dbus-* rw,
ptrace (trace) peer=@{profile_name},
signal (receive, send) set=("term") peer=@{profile_name},