mirror of
https://github.com/roddhjav/apparmor.d.git
synced 2024-11-15 16:03:51 +01:00
32 lines
578 B
Plaintext
32 lines
578 B
Plaintext
# vim:syntax=apparmor
|
|
|
|
include <abstractions/base>
|
|
include <abstractions/nameservice>
|
|
include <abstractions/openssl>
|
|
|
|
network tcp,
|
|
network udp,
|
|
|
|
capability chown,
|
|
capability dac_read_search,
|
|
capability fowner,
|
|
capability fsetid,
|
|
capability setgid,
|
|
capability setuid,
|
|
|
|
/usr/bin/tor r,
|
|
/usr/sbin/tor r,
|
|
|
|
# Needed by obfs4proxy
|
|
/proc/sys/net/core/somaxconn r,
|
|
|
|
/proc/sys/kernel/random/uuid r,
|
|
/sys/devices/system/cpu/ r,
|
|
/sys/devices/system/cpu/** r,
|
|
|
|
/etc/tor/* r,
|
|
/usr/share/tor/** r,
|
|
|
|
/usr/bin/obfsproxy PUx,
|
|
/usr/bin/obfs4proxy Pix,
|