diff --git a/apparmor.d/mount.cifs b/apparmor.d/mount.cifs deleted file mode 100644 index eafeeb85..00000000 --- a/apparmor.d/mount.cifs +++ /dev/null @@ -1,48 +0,0 @@ -# vim:syntax=apparmor -# ------------------------------------------------------------------ -# -# Copyright (C) 2020-2021 Mikhail Morfikov -# -# This program is free software; you can redistribute it and/or -# modify it under the terms of version 2 of the GNU General Public -# License published by the Free Software Foundation. -# -# ------------------------------------------------------------------ - -abi , - -include - -@{exec_path} = /{usr/,}sbin/mount.cifs -profile mount.cifs @{exec_path} flags=(complain) { - include - include - - # To mount anything. - capability sys_admin, - - # (#FIXME#) - capability setpcap, - - network inet stream, - network inet6 stream, - network netlink raw, - - @{exec_path} mr, - - /{usr/,}bin/systemd-ask-password rPUx, - - /etc/fstab r, - - owner @{HOME}/.smbcredentials r, - - # Mount points - /media/*/ r, - /media/*/*/ r, - - # Allow to mount smb/cifs disks only under the /media/ dirs - mount fstype=cifs -> /media/*/, - mount fstype=cifs -> /media/*/*/, - - include if exists -}