From b355a63e784f08cb5b05066e071f4cbfcc661da7 Mon Sep 17 00:00:00 2001 From: Alexandre <44178713+alexbelgium@users.noreply.github.com> Date: Sun, 13 Mar 2022 07:24:10 +0100 Subject: [PATCH] Delete apparmor.txt --- scrutiny_fa/apparmor.txt | 68 ---------------------------------------- 1 file changed, 68 deletions(-) delete mode 100644 scrutiny_fa/apparmor.txt diff --git a/scrutiny_fa/apparmor.txt b/scrutiny_fa/apparmor.txt deleted file mode 100644 index 4ba763dca..000000000 --- a/scrutiny_fa/apparmor.txt +++ /dev/null @@ -1,68 +0,0 @@ -#include - -profile db21ed7f_scrutiny_fa flags=(attach_disconnected,mediate_deleted) { - #include - - capability, - file, - signal, - mount, - umount, - remount, - network udp, - network tcp, - network dgram, - network stream, - network inet, - network inet6, - network netlink raw, - - capability setgid, - capability setuid, - capability dac_override, - capability sys_admin, - capability dac_read_search, - capability sys_rawio, - -# S6-Overlay - /bin/** ix, - /usr/bin/** ix, - /usr/lib/bashio/** ix, - /etc/s6/** rix, - /run/s6/** rix, - /etc/services.d/** rwix, - /etc/cont-init.d/** rwix, - /etc/cont-finish.d/** rwix, - /init rix, - /var/run/** mrwkl, - /var/run/ mrwkl, - /dev/i2c-1 mrwkl, - # Files required - /dev/sda1 mrwkl, - /dev/sdb1 mrwkl, - /dev/mmcblk0p1 mrwkl, - /dev/* mrwkl, - /tmp/** mrkwl, - /dev/sda mrwkl, - /dev/sdb mrwkl, - /dev/sdc mrwkl, - /dev/sdd mrwkl, - /dev/sde mrwkl, - /dev/sdf mrwkl, - /dev/sdg mrwkl, - /dev/nvme0 mrwkl, - /dev/nvme1 mrwkl, - /dev/nvme2 mrwkl, - /dev/nvme3 mrwkl, - /dev/nvme4 mrwkl, - - # Data access - /data/** rw, - - # suppress ptrace denials when using 'docker ps' or using 'ps' inside a container - ptrace (trace,read) peer=docker-default, - - # docker daemon confinement requires explict allow rule for signal - signal (receive) set=(kill,term) peer=/usr/bin/docker, - -}