From f91fc287111d62555c7f4789195548078ad40747 Mon Sep 17 00:00:00 2001 From: Alexandre Pujol Date: Fri, 6 Sep 2024 21:47:24 +0100 Subject: [PATCH] chore: minor guideline cosmetic. --- apparmor.d/abstractions/wayland.d/complete | 7 ++----- apparmor.d/groups/hyprland/hyprland | 13 +++++++------ 2 files changed, 9 insertions(+), 11 deletions(-) diff --git a/apparmor.d/abstractions/wayland.d/complete b/apparmor.d/abstractions/wayland.d/complete index 0054a51d..f0c71263 100644 --- a/apparmor.d/abstractions/wayland.d/complete +++ b/apparmor.d/abstractions/wayland.d/complete @@ -6,16 +6,13 @@ owner @{user_share_dirs}/sddm/wayland-session.log w, - owner @{run}/user/@{uid}/.hyprpaper_* rw, - owner @{run}/user/@{uid}/.hyprpicker_* rw, owner @{run}/user/@{uid}/wayland-@{int}.lock rwk, owner @{run}/user/@{uid}/wayland-proxy-@{int} rw, - owner /tmp/.X@{int}-lock w, + owner /dev/shm/@{uuid} rw, + owner /dev/shm/dunst-@{rand6} rw, owner /dev/shm/grim-@{rand6} rw, owner /dev/shm/sway* rw, - owner /dev/shm/dunst-@{rand6} rw, - owner /dev/shm/@{uuid} rw, owner /dev/shm/wlroots-@{rand6} rw, # vim:syntax=apparmor diff --git a/apparmor.d/groups/hyprland/hyprland b/apparmor.d/groups/hyprland/hyprland index 40ee8329..5fa0ce84 100644 --- a/apparmor.d/groups/hyprland/hyprland +++ b/apparmor.d/groups/hyprland/hyprland @@ -15,23 +15,24 @@ profile hyprland @{exec_path} flags=(attach_disconnected) { capability sys_ptrace, - ptrace read, - network netlink raw, signal send, - @{exec_path} mr, + ptrace read, - owner @{user_share_dirs}/hyprpm/** mr, + @{exec_path} mr, /usr/share/hyprland/{,*} r, /usr/share/libinput/{,*} r, owner @{user_cache_dirs}/hyprland/{,**} rw, owner @{user_config_dirs}/hypr/** r, + owner @{user_share_dirs}/hyprpm/** mr, owner @{run}/user/@{uid}/gamescope-* rw, + owner @{run}/user/@{uid}/.hyprpaper_* rw, + owner @{run}/user/@{uid}/.hyprpicker_* rw, owner @{run}/user/@{uid}/hypr/{,**} rw, owner /dev/shm/.org.chromium.Chromium.@{rand6} rw, @@ -57,8 +58,8 @@ profile hyprland @{exec_path} flags=(attach_disconnected) { owner @{PROC}/@{pid}/environ r, - /dev/input/event@{int} rw, - /dev/tty r, + /dev/input/event@{int} rw, + /dev/tty r, owner /dev/tty@{int} rw, include if exists