From bf2025db09d3bf9a54b8ffbac641625bab0f4bd9 Mon Sep 17 00:00:00 2001 From: Alexandre Pujol Date: Sun, 1 Sep 2024 22:09:00 +0100 Subject: [PATCH] feat(profile): gpg: ensure compatibility with torbrowser profile from upstream. see #407 --- apparmor.d/groups/gpg/gpg | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/apparmor.d/groups/gpg/gpg b/apparmor.d/groups/gpg/gpg index a4f2a11e..43cb9cad 100644 --- a/apparmor.d/groups/gpg/gpg +++ b/apparmor.d/groups/gpg/gpg @@ -41,6 +41,10 @@ profile gpg @{exec_path} { owner @{user_projects_dirs}/**/gnupg/ rw, owner @{user_projects_dirs}/**/gnupg/** rwkl -> @{user_projects_dirs}/**/gnupg/**, + # TODO: For compatibility with torbrowser profile from upstream. + owner @{user_share_dirs}/torbrowser/gnupg_homedir/ rw, + owner @{user_share_dirs}/torbrowser/gnupg_homedir/** rwkl -> @{user_share_dirs}/torbrowser/gnupg_homedir/**, + #aa:only apt owner /etc/apt/keyrings/ rw, owner /etc/apt/keyrings/** rwkl -> /etc/apt/keyrings/**,