apparmor update

This commit is contained in:
Alexandre
2022-06-23 18:24:27 +02:00
parent 1eafd90da5
commit 9339132906
67 changed files with 185 additions and 0 deletions

View File

@@ -31,6 +31,11 @@ profile addon_updater flags=(attach_disconnected,mediate_deleted) {
/etc/cont-init.d/** rwix,
/etc/cont-finish.d/** rwix,
/run/** rwk,
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
# bashio
/usr/lib/bashio/** ix,

View File

@@ -47,6 +47,8 @@ profile arpspoof_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -48,6 +48,8 @@ profile bazarr_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -47,6 +47,8 @@ profile bitwarden_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -47,6 +47,8 @@ profile booksonic-air_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -47,6 +47,8 @@ profile calibre_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -47,6 +47,8 @@ profile calibre-web_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -47,6 +47,8 @@ profile cloudcommander_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -47,6 +47,8 @@ profile code_server_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -36,6 +36,11 @@ profile inadyn_addon flags=(attach_disconnected,mediate_deleted) {
/etc/services.d/** rwix,
/etc/cont-init.d/** rwix,
/etc/cont-finish.d/** rwix,
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/init rix,
/var/run/** mrwkl,
/var/run/ mrwkl,

View File

@@ -47,6 +47,8 @@ profile addon_db21ed7f_emby_nas flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/ttyUSB0 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -43,6 +43,11 @@ profile inadyn_addon flags=(attach_disconnected,mediate_deleted) {
# Data access
/data/** rw,
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
# suppress ptrace denials when using 'docker ps' or using 'ps' inside a container
ptrace (trace,read) peer=docker-default,

View File

@@ -40,6 +40,11 @@ profile inadyn_addon flags=(attach_disconnected,mediate_deleted) {
/var/run/** mrwkl,
/var/run/ mrwkl,
/dev/i2c-1 mrwkl,
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
# Data access
/data/** rw,

View File

@@ -47,6 +47,8 @@ profile db21ed7f_qbittorrent flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -47,6 +47,8 @@ profile fireflyiii_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -47,6 +47,8 @@ profile fireflyiii_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -47,6 +47,8 @@ profile fireflyiii_fints_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -47,6 +47,8 @@ profile joplin flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/ttyUSB0 mrwkl,
/dev/* mrwkl,

View File

@@ -40,6 +40,11 @@ profile flexget_addon flags=(attach_disconnected,mediate_deleted) {
/var/run/** mrwkl,
/var/run/ mrwkl,
/dev/i2c-1 mrwkl,
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
# Data access
/data/** rw,

View File

@@ -40,6 +40,11 @@ profile inadyn_addon flags=(attach_disconnected,mediate_deleted) {
/var/run/** mrwkl,
/var/run/ mrwkl,
/dev/i2c-1 mrwkl,
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
# Data access
/data/** rw,

View File

@@ -47,6 +47,8 @@ profile grav_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -47,6 +47,8 @@ profile guacamole_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/udev/* mrwkl,

View File

@@ -40,6 +40,11 @@ profile inadyn_addon flags=(attach_disconnected,mediate_deleted) {
/var/run/** mrwkl,
/var/run/ mrwkl,
/dev/i2c-1 mrwkl,
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
# Data access
/data/** rw,

View File

@@ -47,6 +47,8 @@ profile jackett_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -47,6 +47,8 @@ profile addon_db21ed7f_jellyfin_nas flags=(attach_disconnected,mediate_deleted)
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/ttyUSB0 mrwkl,
/dev/* mrwkl,

View File

@@ -40,6 +40,11 @@ profile joal_addon flags=(attach_disconnected,mediate_deleted) {
/var/run/** mrwkl,
/var/run/ mrwkl,
/dev/i2c-1 mrwkl,
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
# Data access
/data/** rw,

View File

@@ -47,6 +47,8 @@ profile joplin flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/ttyUSB0 mrwkl,
/dev/* mrwkl,

View File

@@ -47,6 +47,8 @@ profile radarr_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -40,6 +40,11 @@ profile mealie_addon flags=(attach_disconnected,mediate_deleted) {
/var/run/** mrwkl,
/var/run/ mrwkl,
/dev/i2c-1 mrwkl,
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
# Data access
/data/** rw,

View File

@@ -47,6 +47,8 @@ profile mylar3_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -47,6 +47,8 @@ profile nextcloud_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -47,6 +47,8 @@ profile nzbget_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -47,6 +47,8 @@ profile omada_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -47,6 +47,8 @@ profile ombi_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -41,6 +41,11 @@ profile organizr_addon flags=(attach_disconnected,mediate_deleted) {
/var/run/** mrwkl,
/var/run/ mrwkl,
/dev/i2c-1 mrwkl,
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
# Data access
/data/** rw,

View File

@@ -47,6 +47,8 @@ profile overseerr_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -47,6 +47,8 @@ profile addon_db21ed7f_paperless_ngx flags=(attach_disconnected,mediate_deleted)
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/ttyUSB0 mrwkl,
/dev/* mrwkl,

View File

@@ -47,6 +47,8 @@ profile papermerge_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -47,6 +47,8 @@ profile photoprism flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/ttyUSB0 mrwkl,
/dev/* mrwkl,

View File

@@ -47,6 +47,8 @@ profile piwigo_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -47,6 +47,8 @@ profile addon_db21ed7f_plex_nas flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/ttyUSB0 mrwkl,
/dev/* mrwkl,

View File

@@ -47,6 +47,8 @@ profile plex-meta-manager_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -40,6 +40,11 @@ profile portainer_addon flags=(attach_disconnected,mediate_deleted) {
/var/run/** mrwkl,
/var/run/ mrwkl,
/dev/i2c-1 mrwkl,
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
# Data access
/data/** rw,

View File

@@ -47,6 +47,8 @@ profile prowlarr_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -53,6 +53,8 @@ profile db21ed7f_qbittorrent flags=(attach_disconnected,mediate_deleted) {
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -47,6 +47,8 @@ profile radarr_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -47,6 +47,8 @@ profile readarr_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -47,6 +47,8 @@ profile requestrr_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -47,6 +47,8 @@ profile resiliosync_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -47,6 +47,8 @@ profile db21ed7f_scrutiny flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -47,6 +47,8 @@ profile db21ed7f_scrutiny flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -47,6 +47,8 @@ profile seafile_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -47,6 +47,8 @@ profile sonarr_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -40,6 +40,11 @@ profile spotweb_addon flags=(attach_disconnected,mediate_deleted) {
/var/run/** mrwkl,
/var/run/ mrwkl,
/dev/i2c-1 mrwkl,
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
# Data access
/data/** rw,

View File

@@ -40,6 +40,11 @@ profile tandoor_recipes_addon flags=(attach_disconnected,mediate_deleted) {
/var/run/** mrwkl,
/var/run/ mrwkl,
/dev/i2c-1 mrwkl,
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
# Data access
/data/** rw,

View File

@@ -47,6 +47,8 @@ profile db21ed7f_tdarr flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -40,6 +40,11 @@ profile teamspeak_addon flags=(attach_disconnected,mediate_deleted) {
/var/run/** mrwkl,
/var/run/ mrwkl,
/dev/i2c-1 mrwkl,
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
# Data access
/data/** rw,

View File

@@ -47,6 +47,8 @@ profile db21ed7f_transmission flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -47,6 +47,8 @@ profile db21ed7f_transmission_openvpn flags=(attach_disconnected,mediate_deleted
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -47,6 +47,8 @@ profile ubooquity_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -47,6 +47,8 @@ profile unpackerr_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -47,6 +47,8 @@ profile webtop_kde_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/udev/* mrwkl,

View File

@@ -40,6 +40,11 @@ profile webtrees_addon flags=(attach_disconnected,mediate_deleted) {
/var/run/** mrwkl,
/var/run/ mrwkl,
/dev/i2c-1 mrwkl,
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
# Data access
/data/** rw,

View File

@@ -40,6 +40,11 @@ profile wger_addon flags=(attach_disconnected,mediate_deleted) {
/var/run/** mrwkl,
/var/run/ mrwkl,
/dev/i2c-1 mrwkl,
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
# Data access
/data/** rw,

View File

@@ -47,6 +47,8 @@ profile whoogle-search_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,

View File

@@ -40,6 +40,11 @@ profile xteve_addon flags=(attach_disconnected,mediate_deleted) {
/var/run/** mrwkl,
/var/run/ mrwkl,
/dev/i2c-1 mrwkl,
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
# Data access
/data/** rw,

View File

@@ -47,6 +47,8 @@ profile zoneminder_addon flags=(attach_disconnected,mediate_deleted) {
# Files required
/dev/sda1 mrwkl,
/dev/sdb1 mrwkl,
/dev/nvme0 mrwkl,
/dev/nvme1 mrwkl,
/dev/mmcblk0p1 mrwkl,
/dev/* mrwkl,
/tmp/** mrkwl,