# apparmor.d - Full set of apparmor profiles # Copyright (C) 2019-2021 Mikhail Morfikov # SPDX-License-Identifier: GPL-2.0-only abi , include @{exec_path} = /{usr/,}{s,}bin/iw profile iw @{exec_path} { include # To be able to manage network interfaces. capability net_admin, # Needed? audit deny capability sys_module, network netlink raw, @{exec_path} mr, @{sys}/devices/pci[0-9]*/**/ieee80211/phy[0-9]*/index r, # file_inherit owner /dev/tty[0-9]* rw, include if exists }