diff --git a/apparmor.d/abstractions/base.d/complete b/apparmor.d/abstractions/base.d/complete index e1277f3b..65f50595 100644 --- a/apparmor.d/abstractions/base.d/complete +++ b/apparmor.d/abstractions/base.d/complete @@ -3,7 +3,7 @@ # Copyright (C) 2021-2024 Alexandre Pujol # SPDX-License-Identifier: GPL-2.0-only - # Allow to receive some signals + # Allow to receive some signals from new well-known profiles signal (receive) peer=htop, signal (receive) peer=sudo, signal (receive) peer=top, @@ -21,7 +21,6 @@ /usr/share/locale/ r, @{etc_rw}/localtime r, - /etc/gnutls/config r, /etc/locale.conf r, @{sys}/devices/system/cpu/possible r, diff --git a/apparmor.d/abstractions/crypto.d/complete b/apparmor.d/abstractions/crypto.d/complete new file mode 100644 index 00000000..ccf3d799 --- /dev/null +++ b/apparmor.d/abstractions/crypto.d/complete @@ -0,0 +1,8 @@ +# apparmor.d - Full set of apparmor profiles +# Copyright (C) 2024 Alexandre Pujol +# SPDX-License-Identifier: GPL-2.0-only + + include + + @{etc_ro}/gnutls/config r, + @{etc_ro}/gnutls/pkcs11.conf r,