From 79ad34503470c240d2b20337d22e7d9fb67f465f Mon Sep 17 00:00:00 2001 From: Alexandre Pujol Date: Fri, 15 Dec 2023 23:21:28 +0000 Subject: [PATCH] fix: mqueue rules. --- apparmor.d/groups/gnome/nautilus | 2 ++ apparmor.d/groups/ubuntu/package-system-locked | 2 +- 2 files changed, 3 insertions(+), 1 deletion(-) diff --git a/apparmor.d/groups/gnome/nautilus b/apparmor.d/groups/gnome/nautilus index 522e9a2d..a4cc04a8 100644 --- a/apparmor.d/groups/gnome/nautilus +++ b/apparmor.d/groups/gnome/nautilus @@ -30,6 +30,8 @@ profile nautilus @{exec_path} flags=(attach_disconnected) { include include + # mqueue r type=posix /, + dbus bind bus=session name=org.gnome.Nautilus, dbus (send, receive) bus=session path=/org/gnome/Nautilus{,/**} interface={org.gnome.Nautilus,org.freedesktop.{Application,DBus.Properties},org.gtk.{Actions,Application}} diff --git a/apparmor.d/groups/ubuntu/package-system-locked b/apparmor.d/groups/ubuntu/package-system-locked index db2a8e29..00a47e23 100644 --- a/apparmor.d/groups/ubuntu/package-system-locked +++ b/apparmor.d/groups/ubuntu/package-system-locked @@ -17,7 +17,7 @@ profile package-system-locked @{exec_path} flags=(attach_disconnected) { network inet dgram, network inet6 dgram, - # mqueue type=posix /, + # mqueue read type=posix /, ptrace (read),