# apparmor.d - Full set of apparmor profiles # Copyright (C) 2019-2021 Mikhail Morfikov # SPDX-License-Identifier: GPL-2.0-only abi , include @{exec_path} = /{usr/,}{s,}bin/dmidecode profile dmidecode @{exec_path} { include @{exec_path} mr, @{sys}/firmware/dmi/tables/smbios_entry_point r, @{sys}/firmware/dmi/tables/DMI r, # The following are needed when the --no-sysfs flag is used #capability sys_rawio, #/dev/mem r, #@{sys}/firmware/efi/systab r, # For dumping the output to a file owner /tmp/dump.bin rw, include if exists }