From 9343807632098e5816ce2d550f156aad172ee92d Mon Sep 17 00:00:00 2001 From: Alexandre Pujol Date: Tue, 24 Jan 2023 19:55:50 +0000 Subject: [PATCH] feat(profiles): audit udev on the browsers. --- apparmor.d/abstractions/chromium | 2 +- apparmor.d/groups/browsers/firefox | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/apparmor.d/abstractions/chromium b/apparmor.d/abstractions/chromium index ae17fc67..cbae4033 100644 --- a/apparmor.d/abstractions/chromium +++ b/apparmor.d/abstractions/chromium @@ -176,7 +176,7 @@ owner @{PROC}/@{pids}/environ r, owner @{PROC}/@{pids}/task/ r, - @{run}/udev/data/* r, + audit @{run}/udev/data/* r, @{sys}/bus/ r, @{sys}/bus/**/devices/ r, diff --git a/apparmor.d/groups/browsers/firefox b/apparmor.d/groups/browsers/firefox index d8cf4858..d779aee8 100644 --- a/apparmor.d/groups/browsers/firefox +++ b/apparmor.d/groups/browsers/firefox @@ -214,7 +214,7 @@ profile firefox @{exec_path} flags=(attach_disconnected) { owner /tmp/mozilla_*/* rw, owner /tmp/Temp-*/ rw, - @{run}/udev/data/* r, + audit @{run}/udev/data/* r, @{sys}/bus/ r, @{sys}/cgroup/cpu,cpuacct/user.slice/cpu.cfs_quota_us r,