feat(groups/{_,k,n,p}*): vim syntax support

Add vim modeline instructing the editor to use syntax plugin provided by apparmor.
Continuation of #394 to keep the diff list relatively short.
This commit is contained in:
REmerald 2024-06-16 17:25:08 +03:00 committed by Alex
parent da93eb29d8
commit f1a0349978
115 changed files with 275 additions and 45 deletions

View file

@ -52,3 +52,5 @@ profile bwrap @{exec_path} flags=(attach_disconnected,mediate_deleted) {
include if exists <usr/bwrap.d>
include if exists <local/bwrap>
}
# vim:syntax=apparmor

View file

@ -33,3 +33,5 @@ profile bwrap-app flags=(attach_disconnected,mediate_deleted) {
include if exists <usr/bwrap-app.d>
include if exists <local/bwrap-app>
}
# vim:syntax=apparmor

View file

@ -123,3 +123,5 @@ profile default @{exec_path} flags=(attach_disconnected,mediate_deleted) {
include if exists <usr/default.d>
include if exists <local/default>
}
# vim:syntax=apparmor

View file

@ -37,4 +37,6 @@ profile default-sudo {
@{run}/systemd/sessions/* r,
include if exists <local/default-sudo>
}
}
# vim:syntax=apparmor

View file

@ -261,3 +261,5 @@ profile systemd flags=(attach_disconnected,mediate_deleted) {
include if exists <usr/systemd.d>
include if exists <local/systemd>
}
# vim:syntax=apparmor

View file

@ -67,4 +67,6 @@ profile systemd-service flags=(attach_disconnected) {
include if exists <usr/systemd-service.d>
include if exists <local/systemd-service>
}
}
# vim:syntax=apparmor

View file

@ -136,3 +136,5 @@ profile systemd-user flags=(attach_disconnected,mediate_deleted) {
include if exists <usr/systemd-user.d>
include if exists <local/systemd-user>
}
# vim:syntax=apparmor

View file

@ -76,4 +76,6 @@ profile DiscoverNotifier @{exec_path} {
}
include if exists <local/DiscoverNotifier>
}
}
# vim:syntax=apparmor

View file

@ -49,3 +49,5 @@ profile baloo @{exec_path} {
include if exists <local/baloo>
}
# vim:syntax=apparmor

View file

@ -64,4 +64,6 @@ profile baloorunner @{exec_path} {
/dev/tty r,
include if exists <local/baloorunner>
}
}
# vim:syntax=apparmor

View file

@ -95,3 +95,5 @@ profile dolphin @{exec_path} {
include if exists <local/dolphin>
}
# vim:syntax=apparmor

View file

@ -31,3 +31,5 @@ profile drkonqi @{exec_path} {
include if exists <local/drkonqi>
}
# vim:syntax=apparmor

View file

@ -17,4 +17,6 @@ profile drkonqi-coredump-cleanup @{exec_path} {
owner @{user_cache_dirs}/kcrash-metadata/plasmashell.@{hex32}.@{int4}.ini w,
include if exists <local/drkonqi-coredump-cleanup>
}
}
# vim:syntax=apparmor

View file

@ -30,4 +30,6 @@ profile drkonqi-coredump-processor @{exec_path} {
/{run,var}/log/journal/remote/ r,
include if exists <local/drkonqi-coredump-processor>
}
}
# vim:syntax=apparmor

View file

@ -26,4 +26,6 @@ profile gmenudbusmenuproxy @{exec_path} {
owner @{user_config_dirs}/gtk-{2,3}.0/settings.ini.lock rwk,
include if exists <local/gmenudbusmenuproxy>
}
}
# vim:syntax=apparmor

View file

@ -30,3 +30,5 @@ profile kaccess @{exec_path} {
include if exists <local/kaccess>
}
# vim:syntax=apparmor

View file

@ -56,3 +56,5 @@ profile kactivitymanagerd @{exec_path} {
include if exists <local/kactivitymanagerd>
}
# vim:syntax=apparmor

View file

@ -40,3 +40,5 @@ profile kalendarac @{exec_path} {
include if exists <local/kalendarac>
}
# vim:syntax=apparmor

View file

@ -35,3 +35,5 @@ profile kauth-backlighthelper @{exec_path} {
include if exists <local/kauth-backlighthelper>
}
# vim:syntax=apparmor

View file

@ -20,4 +20,6 @@ profile kauth-chargethresholdhelper @{exec_path} {
@{sys}/devices/**/power_supply/** r,
include if exists <local/kauth-chargethresholdhelper>
}
}
# vim:syntax=apparmor

View file

@ -16,4 +16,6 @@ profile kauth-discretegpuhelper @{exec_path} {
/usr/share/icu/@{int}.@{int}/*.dat r,
include if exists <local/kauth-discretegpuhelper>
}
}
# vim:syntax=apparmor

View file

@ -16,4 +16,6 @@ profile kauth-fontinst @{exec_path} {
/usr/share/icu/@{int}.@{int}/*.dat r,
include if exists <local/kauth-fontinst>
}
}
# vim:syntax=apparmor

View file

@ -28,3 +28,5 @@ profile kauth-kded-smart-helper @{exec_path} {
include if exists <local/kauth-kded-smart-helper>
}
# vim:syntax=apparmor

View file

@ -16,4 +16,6 @@ profile kauth-kinfocenter-dmidecode-helper @{exec_path} {
@{bin}/dmidecode rPx,
include if exists <local/kauth-kinfocenter-dmidecode-helper>
}
}
# vim:syntax=apparmor

View file

@ -22,3 +22,5 @@ profile kbuildsycoca5 @{exec_path} flags=(attach_disconnected) {
include if exists <local/kbuildsycoca5>
}
# vim:syntax=apparmor

View file

@ -46,3 +46,5 @@ profile kcminit @{exec_path} {
include if exists <local/kcminit>
}
# vim:syntax=apparmor

View file

@ -109,3 +109,5 @@ profile kconf_update @{exec_path} {
include if exists <local/kconf_update>
}
# vim:syntax=apparmor

View file

@ -78,3 +78,5 @@ profile kde-powerdevil @{exec_path} flags=(attach_disconnected mediate_deleted)
include if exists <local/kde-powerdevil>
}
# vim:syntax=apparmor

View file

@ -20,4 +20,6 @@ profile kde-systemd-start-condition @{exec_path} {
owner @{user_config_dirs}/plasma-welcomerc r,
include if exists <local/kde-systemd-start-condition>
}
}
# vim:syntax=apparmor

View file

@ -175,3 +175,5 @@ profile kded @{exec_path} {
include if exists <local/kded>
}
# vim:syntax=apparmor

View file

@ -27,3 +27,5 @@ profile kglobalacceld @{exec_path} {
include if exists <local/kglobalacceld>
}
# vim:syntax=apparmor

View file

@ -22,4 +22,6 @@ profile kio_http_cache_cleaner @{exec_path} {
owner @{run}/user/@{uid}/kio_http_cache_cleaner rw,
include if exists <local/kio_http_cache_cleaner>
}
}
# vim:syntax=apparmor

View file

@ -32,4 +32,6 @@ profile kiod @{exec_path} {
/dev/tty r,
include if exists <local/kiod>
}
}
# vim:syntax=apparmor

View file

@ -99,3 +99,5 @@ profile kioworker @{exec_path} {
include if exists <local/kioworker>
}
# vim:syntax=apparmor

View file

@ -69,3 +69,5 @@ profile konsole @{exec_path} flags=(attach_disconnected,mediate_deleted) {
include if exists <local/konsole>
}
# vim:syntax=apparmor

View file

@ -25,4 +25,6 @@ profile kreadconfig @{exec_path} {
owner @{user_config_dirs}/kdeglobals r,
include if exists <local/kreadconfig>
}
}
# vim:syntax=apparmor

View file

@ -17,4 +17,6 @@ profile kscreen_backend_launcher @{exec_path} {
/dev/tty r,
include if exists <local/kscreen_backend_launcher>
}
}
# vim:syntax=apparmor

View file

@ -17,4 +17,6 @@ profile kscreen_osd_service @{exec_path} {
@{exec_path} mr,
include if exists <local/kscreen_osd_service>
}
}
# vim:syntax=apparmor

View file

@ -107,3 +107,5 @@ profile kscreenlocker_greet @{exec_path} {
include if exists <local/kscreenlocker_greet>
}
# vim:syntax=apparmor

View file

@ -71,3 +71,5 @@ profile ksmserver @{exec_path} flags=(attach_disconnected,mediate_deleted) {
include if exists <local/ksmserver>
}
# vim:syntax=apparmor

View file

@ -58,3 +58,5 @@ profile ksmserver-logout-greeter @{exec_path} flags=(attach_disconnected) {
include if exists <local/ksmserver-logout-greeter>
}
# vim:syntax=apparmor

View file

@ -34,3 +34,5 @@ profile ksplashqml @{exec_path} {
include if exists <local/ksplashqml>
}
# vim:syntax=apparmor

View file

@ -30,3 +30,5 @@ profile kstart @{exec_path} flags=(attach_disconnected) {
include if exists <local/kstart>
}
# vim:syntax=apparmor

View file

@ -63,3 +63,5 @@ profile kwalletd @{exec_path} {
include if exists <local/kwalletd>
}
# vim:syntax=apparmor

View file

@ -50,3 +50,5 @@ profile kwalletmanager @{exec_path} {
include if exists <local/kwalletmanager>
}
# vim:syntax=apparmor

View file

@ -133,3 +133,5 @@ profile kwin_wayland @{exec_path} flags=(attach_disconnected mediate_deleted) {
include if exists <local/kwin_wayland>
}
# vim:syntax=apparmor

View file

@ -23,3 +23,5 @@ profile kwin_wayland_wrapper @{exec_path} {
include if exists <local/kwin_wayland_wrapper>
}
# vim:syntax=apparmor

View file

@ -68,3 +68,5 @@ profile kwin_x11 @{exec_path} {
include if exists <local/kwin_x11>
}
# vim:syntax=apparmor

View file

@ -63,3 +63,5 @@ profile okular @{exec_path} {
include if exists <local/okular>
}
# vim:syntax=apparmor

View file

@ -19,4 +19,6 @@ profile pam_kwallet_init @{exec_path} {
/dev/tty rw,
include if exists <local/pam_kwallet_init>
}
}
# vim:syntax=apparmor

View file

@ -42,3 +42,5 @@ profile plasma-browser-integration-host @{exec_path} {
include if exists <local/plasma-browser-integration-host>
}
# vim:syntax=apparmor

View file

@ -115,4 +115,6 @@ profile plasma-discover @{exec_path} {
}
include if exists <local/plasma-discover>
}
}
# vim:syntax=apparmor

View file

@ -22,4 +22,6 @@ profile plasma-emojier @{exec_path} {
owner @{user_config_dirs}/plasma.emojierrc.lock rwk,
include if exists <local/plasma-emojier>
}
}
# vim:syntax=apparmor

View file

@ -46,4 +46,6 @@ profile plasma_session @{exec_path} {
owner @{user_config_dirs}/plasma-welcomerc r,
include if exists <local/plasma_session>
}
}
# vim:syntax=apparmor

View file

@ -14,4 +14,6 @@ profile plasma_waitforname @{exec_path} {
@{exec_path} mr,
include if exists <local/plasma_waitforname>
}
}
# vim:syntax=apparmor

View file

@ -206,3 +206,5 @@ profile plasmashell @{exec_path} flags=(mediate_deleted) {
include if exists <local/plasmashell>
}
# vim:syntax=apparmor

View file

@ -225,3 +225,5 @@ profile sddm @{exec_path} flags=(attach_disconnected,mediate_deleted) {
include if exists <local/sddm>
}
# vim:syntax=apparmor

View file

@ -73,3 +73,5 @@ profile sddm-greeter @{exec_path} {
include if exists <local/sddm-greeter>
}
# vim:syntax=apparmor

View file

@ -133,3 +133,5 @@ profile sddm-xsession @{exec_path} {
include if exists <local/sddm-xsession>
}
# vim:syntax=apparmor

View file

@ -85,3 +85,5 @@ profile startplasma @{exec_path} {
include if exists <local/startplasma>
}
# vim:syntax=apparmor

View file

@ -79,4 +79,6 @@ profile systemsettings @{exec_path} {
/dev/tty r,
include if exists <local/systemsettings>
}
}
# vim:syntax=apparmor

View file

@ -20,4 +20,6 @@ profile utempter @{exec_path} flags=(attach_disconnected) {
/dev/ptmx rw,
include if exists <local/utempter>
}
}
# vim:syntax=apparmor

View file

@ -27,4 +27,6 @@ profile wayland-session @{exec_path} {
/dev/tty rw,
include if exists <local/wayland-session>
}
}
# vim:syntax=apparmor

View file

@ -24,3 +24,5 @@ profile xembedsniproxy @{exec_path} {
include if exists <local/xembedsniproxy>
}
# vim:syntax=apparmor

View file

@ -22,3 +22,5 @@ profile xsettingsd @{exec_path} {
include if exists <local/xsettingsd>
}
# vim:syntax=apparmor

View file

@ -21,4 +21,6 @@ profile xwaylandvideobridge @{exec_path} {
owner @{user_cache_dirs}/xwaylandvideobridge/** rwk,
include if exists <local/xwaylandvideobridge>
}
}
# vim:syntax=apparmor

View file

@ -50,3 +50,5 @@ profile ModemManager @{exec_path} flags=(attach_disconnected) {
include if exists <local/ModemManager>
}
# vim:syntax=apparmor

View file

@ -153,3 +153,5 @@ profile NetworkManager @{exec_path} flags=(attach_disconnected) {
include if exists <local/NetworkManager>
}
# vim:syntax=apparmor

View file

@ -73,3 +73,5 @@ profile dhcpcd @{exec_path} flags=(attach_disconnected) {
include if exists <local/dhcpcd>
}
# vim:syntax=apparmor

View file

@ -19,4 +19,6 @@ profile iwctl @{exec_path} {
owner @{user_share_dirs}/iwctl/{,**} rw,
include if exists <local/iwctl>
}
}
# vim:syntax=apparmor

View file

@ -40,4 +40,6 @@ profile iwd @{exec_path} {
/dev/rfkill rw,
include if exists <local/iwd>
}
}
# vim:syntax=apparmor

View file

@ -68,3 +68,5 @@ profile mullvad-daemon @{exec_path} flags=(attach_disconnected) {
include if exists <local/mullvad-daemon>
}
# vim:syntax=apparmor

View file

@ -42,3 +42,5 @@ profile mullvad-gui @{exec_path} flags=(attach_disconnected) {
include if exists <local/mullvad-gui>
}
# vim:syntax=apparmor

View file

@ -53,4 +53,6 @@ profile netplan.script @{exec_path} flags=(attach_disconnected) {
}
include if exists <local/netplan.script>
}
}
# vim:syntax=apparmor

View file

@ -38,3 +38,5 @@ profile networkd-dispatcher @{exec_path} {
include if exists <local/networkd-dispatcher>
}
# vim:syntax=apparmor

View file

@ -17,4 +17,6 @@ profile nm-daemon-helper @{exec_path} {
@{exec_path} mr,
include if exists <local/nm-daemon-helper>
}
}
# vim:syntax=apparmor

View file

@ -27,3 +27,5 @@ profile nm-dhcp-helper @{exec_path} {
include if exists <local/nm-dhcp-helper>
}
# vim:syntax=apparmor

View file

@ -130,3 +130,5 @@ profile nm-dispatcher @{exec_path} flags=(attach_disconnected) {
include if exists <local/nm-dispatcher>
}
# vim:syntax=apparmor

View file

@ -14,3 +14,5 @@ profile nm-iface-helper @{exec_path} {
include if exists <local/nm-iface-helper>
}
# vim:syntax=apparmor

View file

@ -14,3 +14,5 @@ profile nm-initrd-generator @{exec_path} {
include if exists <local/nm-initrd-generator>
}
# vim:syntax=apparmor

View file

@ -26,3 +26,5 @@ profile nm-online @{exec_path} {
include if exists <local/nm-online>
}
# vim:syntax=apparmor

View file

@ -16,3 +16,5 @@ profile nm-openvpn-auth-dialog @{exec_path} {
include if exists <local/nm-openvpn-auth-dialog>
}
# vim:syntax=apparmor

View file

@ -33,3 +33,5 @@ profile nm-openvpn-service @{exec_path} {
include if exists <local/nm-openvpn-service>
}
# vim:syntax=apparmor

View file

@ -16,3 +16,5 @@ profile nm-openvpn-service-openvpn-helper @{exec_path} {
include if exists <local/nm-openvpn-service-openvpn-helper>
}
# vim:syntax=apparmor

View file

@ -17,4 +17,6 @@ profile nm-priv-helper @{exec_path} {
@{exec_path} mr,
include if exists <local/nm-priv-helper>
}
}
# vim:syntax=apparmor

View file

@ -29,4 +29,6 @@ profile nmcli @{exec_path} {
@{sys}/devices/@{pci}/net/*/{,**} r,
include if exists <local/nmcli>
}
}
# vim:syntax=apparmor

View file

@ -125,3 +125,5 @@ profile openvpn @{exec_path} flags=(attach_disconnected) {
include if exists <local/openvpn>
}
# vim:syntax=apparmor

View file

@ -14,3 +14,5 @@ profile rpcbind @{exec_path} flags=(complain) {
include if exists <local/rpcbind>
}
# vim:syntax=apparmor

View file

@ -35,4 +35,6 @@ profile tailscale @{exec_path} {
owner @{PROC}/@{pids}/environ r,
include if exists <local/tailscale>
}
}
# vim:syntax=apparmor

View file

@ -102,3 +102,5 @@ profile tailscaled @{exec_path} flags=(attach_disconnected) {
include if exists <local/tailscaled>
}
# vim:syntax=apparmor

View file

@ -17,4 +17,6 @@ profile wg @{exec_path} {
@{exec_path} mr,
include if exists <local/wg>
}
}
# vim:syntax=apparmor

View file

@ -45,4 +45,6 @@ profile wg-quick @{exec_path} {
deny @{bin}/sudo x,
include if exists <local/wg-quick>
}
}
# vim:syntax=apparmor

View file

@ -38,3 +38,5 @@ profile arch-audit @{exec_path} {
include if exists <local/arch-audit>
}
# vim:syntax=apparmor

View file

@ -32,4 +32,6 @@ profile archlinux-java @{exec_path} {
deny network inet stream,
include if exists <local/archlinux-java>
}
}
# vim:syntax=apparmor

View file

@ -39,4 +39,6 @@ profile archlinux-keyring-wkd-sync @{exec_path} {
/dev/tty rw,
include if exists <local/archlinux-keyring-wkd-sync>
}
}
# vim:syntax=apparmor

View file

@ -62,4 +62,6 @@ profile aurpublish @{exec_path} {
/dev/tty rw,
include if exists <local/aurpublish>
}
}
# vim:syntax=apparmor

View file

@ -103,3 +103,5 @@ profile mkinitcpio @{exec_path} flags=(attach_disconnected) {
include if exists <local/mkinitcpio>
}
# vim:syntax=apparmor

View file

@ -46,3 +46,5 @@ profile paccache @{exec_path} flags=(attach_disconnected) {
include if exists <local/paccache>
}
# vim:syntax=apparmor

View file

@ -46,3 +46,5 @@ profile pacdiff @{exec_path} flags=(attach_disconnected) {
include if exists <local/pacdiff>
}
# vim:syntax=apparmor

View file

@ -210,3 +210,5 @@ profile pacman @{exec_path} flags=(attach_disconnected) {
include if exists <usr/pacman.d>
include if exists <local/pacman>
}
# vim:syntax=apparmor

Some files were not shown because too many files have changed in this diff Show more