feat(profile): replace former regex by the new @{user} variable.

This commit is contained in:
Alexandre Pujol 2024-05-15 17:22:20 +01:00
parent 407c71b133
commit ad960d477b
Failed to generate hash of commit
10 changed files with 11 additions and 11 deletions

View file

@ -47,8 +47,8 @@
owner @{HOME}/.sudo_as_admin_successful rw,
@{run}/faillock/{,*} rwk,
@{run}/faillock/ rw,
@{run}/faillock/@{user} rwk,
owner @{run}/sudo/ rw,
owner @{run}/sudo/ts/ rw,
owner @{run}/sudo/ts/@{uid} rwk,

View file

@ -71,7 +71,7 @@ profile lightdm @{exec_path} flags=(attach_disconnected) {
owner @{HOME}/.dmrc r,
@{run}/faillock/ rw,
@{run}/faillock/user rwk,
@{run}/faillock/@{user} rwk,
@{run}/lightdm.pid rw,
@{run}/lightdm/{,**} rw,
owner @{run}/systemd/sessions/*.ref rw,

View file

@ -44,7 +44,7 @@ profile polkit-agent-helper @{exec_path} {
owner @{HOME}/.xsession-errors w,
@{run}/faillock/[a-zA-z0-9]* rwk,
@{run}/faillock/@{user} rwk,
@{PROC}/1/cgroup r,
owner @{PROC}/@{pid}/cgroup r,

View file

@ -104,7 +104,7 @@ profile gdm-session-worker @{exec_path} flags=(attach_disconnected) {
owner @{run}/gdm{3,}/dbus/dbus-@{rand8} w,
@{run}/cockpit/active.motd r,
@{run}/faillock/[a-zA-z0-9]* rwk,
@{run}/faillock/@{user} rwk,
@{run}/motd.d/{,*} r,
@{run}/systemd/sessions/* r,
@{run}/systemd/sessions/*.ref rw,

View file

@ -92,7 +92,7 @@ profile kscreenlocker_greet @{exec_path} {
owner @{tmp}/*-cover-*.{jpg,png} r,
@{run}/faillock/[a-zA-z0-9]* rwk,
@{run}/faillock/@{user} rwk,
@{sys}/devices/system/node/ r,
@{sys}/devices/system/node/node@{int}/meminfo r,

View file

@ -172,7 +172,7 @@ profile sddm @{exec_path} flags=(attach_disconnected,mediate_deleted) {
owner @{tmp}/#@{int} rw,
owner @{tmp}/sddm-auth* rw,
@{run}/faillock/[a-zA-z0-9]* rwk,
@{run}/faillock/@{user} rwk,
@{run}/sddm.pid rw,
@{run}/sddm/\{@{uuid}\} rw,
@{run}/sddm/#@{int} rw,

View file

@ -91,7 +91,7 @@ profile sshd @{exec_path} flags=(attach_disconnected) {
owner @{HOME}/@{XDG_SSH_DIR}/authorized_keys{,.*} r,
owner @{user_cache_dirs}/{,motd*} rw,
@{run}/faillock/[a-zA-z0-9]* rwk,
@{run}/faillock/@{user} rwk,
@{run}/motd.d/{,*} r,
@{run}/motd.dynamic rw,
@{run}/motd.dynamic.new rw,

View file

@ -36,7 +36,7 @@ profile cockpit-session @{exec_path} flags=(attach_disconnected) {
/etc/motd.d/ r,
/etc/shells r,
@{run}/faillock/[a-zA-z0-9]* rwk,
@{run}/faillock/@{user} rwk,
@{run}/systemd/sessions/*.ref rw,
@{run}/utmp rwk,
@{run}/motd.d/{,*} r,

View file

@ -22,7 +22,7 @@ profile pam-info @{exec_path} {
/etc/pam.d/* r,
@{run}/faillock/user rwk,
@{run}/faillock/@{user} rwk,
owner /dev/tty rw,

View file

@ -60,7 +60,7 @@ profile login @{exec_path} flags=(attach_disconnected) {
@{run}/motd.d/{,*} r,
@{run}/dbus/system_bus_socket rw,
@{run}/faillock/* rwk,
@{run}/faillock/@{user} rwk,
@{run}/motd.dynamic{,.new} rw,
@{run}/systemd/sessions/*.ref rw,