Support read AppArmor profiles

This commit is contained in:
Jeroen Rijken 2022-07-19 17:10:53 +02:00 committed by Alex
parent 560250cf5f
commit 8f81a39df1

View File

@ -153,6 +153,7 @@ profile k3s @{exec_path} flags=(complain) {
@{sys}/kernel/mm/hugepages/ r, @{sys}/kernel/mm/hugepages/ r,
@{sys}/kernel/mm/transparent_hugepage/hpage_pmd_size r, @{sys}/kernel/mm/transparent_hugepage/hpage_pmd_size r,
@{sys}/kernel/mm/hugepages/hugepages-*/nr_hugepages r, @{sys}/kernel/mm/hugepages/hugepages-*/nr_hugepages r,
@{sys}/kernel/security/apparmor/profiles r,
@{sys}/module/apparmor/parameters/enabled r, @{sys}/module/apparmor/parameters/enabled r,