diff --git a/apparmor.d/groups/gnome/gcr-prompter b/apparmor.d/groups/gnome/gcr-prompter new file mode 100644 index 00000000..4ecc0c0d --- /dev/null +++ b/apparmor.d/groups/gnome/gcr-prompter @@ -0,0 +1,18 @@ +# apparmor.d - Full set of apparmor profiles +# Copyright (C) 2024 Alexandre Pujol +# SPDX-License-Identifier: GPL-2.0-only + +abi , + +include + +@{exec_path} = @{lib}/gcr-prompter +profile gcr-prompter @{exec_path} { + include + + @{exec_path} mr, + + owner @{HOME}/@{XDG_SSH_DIR}/ r, + + include if exists +} \ No newline at end of file diff --git a/apparmor.d/groups/ssh/gcr-ssh-agent b/apparmor.d/groups/gnome/gcr-ssh-agent similarity index 92% rename from apparmor.d/groups/ssh/gcr-ssh-agent rename to apparmor.d/groups/gnome/gcr-ssh-agent index 261ab8d9..132a1bad 100644 --- a/apparmor.d/groups/ssh/gcr-ssh-agent +++ b/apparmor.d/groups/gnome/gcr-ssh-agent @@ -15,7 +15,7 @@ profile gcr-ssh-agent @{exec_path} { @{bin}/ssh-agent rPx, @{bin}/ssh-add rix, - owner @{HOME}/@{XDG_SSH_DIR}/* r, + owner @{HOME}/@{XDG_SSH_DIR}/{,*} r, owner @{run}/user/@{uid}/ssh-askpass.@{rand6}/{,*} rw,