diff --git a/apparmor.d/groups/gnome/gnome-browser-connector-host b/apparmor.d/groups/gnome/gnome-browser-connector-host new file mode 100644 index 00000000..abc4601b --- /dev/null +++ b/apparmor.d/groups/gnome/gnome-browser-connector-host @@ -0,0 +1,27 @@ +# apparmor.d - Full set of apparmor profiles +# Copyright (C) 2022 Alexandre Pujol +# SPDX-License-Identifier: GPL-2.0-only + +abi , + +include + +@{exec_path} = /{usr/,}bin/gnome-browser-connector-host +profile gnome-browser-connector-host @{exec_path} { + include + include + include + + @{exec_path} mr, + + /{usr/,}bin/env rix, + /{usr/,}bin/python3.[0-9]* rix, + + /{usr/,}lib/python3.[0-9]*/site-packages/gnome_browser_connector/__pycache__/{,**} rw, + + /usr/share/glib-2.0/schemas/gschemas.compiled r, + + owner @{PROC}/@{pid}/mounts r, + + include if exists +} \ No newline at end of file diff --git a/dists/flags/main.flags b/dists/flags/main.flags index 5c751c8f..2b95c34b 100644 --- a/dists/flags/main.flags +++ b/dists/flags/main.flags @@ -63,6 +63,7 @@ gdm-x-session attach_disconnected,complain gdm-xsession complain git complain glib-compile-resources complain +gnome-browser-connector-host complain gnome-control-center attach_disconnected,complain gnome-control-center-goa-helper complain gnome-disk-image-mounter complain