2012-05-09 11:33:36 -07:00
|
|
|
#
|
|
|
|
# Example usage for a program named 'foo' which is installed in /opt/foo
|
|
|
|
# $ aa-easyprof --template=sandbox \
|
|
|
|
# --template-var="@{APPNAME}=foo" \
|
|
|
|
# --policy-groups=opt-application,user-application \
|
|
|
|
# /opt/foo/bin/foo
|
|
|
|
#
|
|
|
|
###ENDUSAGE###
|
|
|
|
# vim:syntax=apparmor
|
|
|
|
# AppArmor policy for ###NAME###
|
|
|
|
|
|
|
|
#include <tunables/global>
|
|
|
|
|
|
|
|
###VAR###
|
|
|
|
|
2014-02-13 17:53:40 -08:00
|
|
|
###PROFILEATTACH### {
|
2012-05-09 11:33:36 -07:00
|
|
|
#include <abstractions/base>
|
2012-05-10 01:17:56 -07:00
|
|
|
/ r,
|
|
|
|
/**/ r,
|
|
|
|
/usr/** r,
|
2012-05-09 11:33:36 -07:00
|
|
|
|
|
|
|
###ABSTRACTIONS###
|
|
|
|
|
|
|
|
###POLICYGROUPS###
|
|
|
|
|
|
|
|
###READS###
|
|
|
|
|
|
|
|
###WRITES###
|
|
|
|
}
|