diff --git a/apparmor.d/groups/systemd/systemd-oomd b/apparmor.d/groups/systemd/systemd-oomd index 922ed7a2..2460d699 100644 --- a/apparmor.d/groups/systemd/systemd-oomd +++ b/apparmor.d/groups/systemd/systemd-oomd @@ -30,11 +30,9 @@ profile systemd-oomd @{exec_path} flags=(attach_disconnected) { owner @{run}/systemd/journal/socket w, @{sys}/fs/cgroup/cgroup.controllers r, - @{sys}/fs/cgroup/memory.pressure r, + @{sys}/fs/cgroup/memory.* r, @{sys}/fs/cgroup/system.slice/memory.* r, - @{sys}/fs/cgroup/user.slice/user-@{uid}.slice/user@@{uid}.service/memory.* r, - @{sys}/fs/cgroup/user.slice/user-@{uid}.slice/user@@{uid}.service/session.slice/memory.* r, - @{sys}/fs/cgroup/user.slice/user-@{uid}.slice/user@@{uid}.service/app.slice/{,**/}memory.* r, + @{sys}/fs/cgroup/user.slice/{,**/}/memory.* r, @{PROC}/pressure/cpu r, @{PROC}/pressure/io r,