# vim:syntax=apparmor # ------------------------------------------------------------------ # # Copyright (C) 2019-2021 Mikhail Morfikov # # This program is free software; you can redistribute it and/or # modify it under the terms of version 2 of the GNU General Public # License published by the Free Software Foundation. # # ------------------------------------------------------------------ abi , include @{exec_path} = /{usr/,}lib/systemd/systemd-timesyncd profile systemd-timesyncd @{exec_path} { include include include capability sys_time, @{exec_path} mr, /etc/systemd/timesyncd.conf r, owner /var/lib/systemd/timesync/clock rw, owner @{run}/systemd/timesync/synchronized rw, @{run}/systemd/netif/state r, include if exists }