Merge pull request #2587 from alexbelgium/copilot/review-apparmor-permissions-addons

Replace blanket AppArmor `capability,` with specific per-addon capabilities
This commit is contained in:
Alexandre
2026-03-17 09:09:09 +01:00
committed by GitHub
107 changed files with 652 additions and 669 deletions

View File

@@ -3,7 +3,13 @@
profile netalertx_addon flags=(attach_disconnected,mediate_deleted) {
#include <abstractions/base>
capability,
capability chown,
capability dac_override,
capability fowner,
capability net_admin,
capability net_raw,
capability setgid,
capability setuid,
file,
signal,
mount,