2016-10-01 20:57:09 +02:00
|
|
|
#! /usr/bin/python3
|
2013-09-28 20:43:06 +05:30
|
|
|
# ----------------------------------------------------------------------
|
|
|
|
# Copyright (C) 2013 Kshitij Gupta <kgupta8592@gmail.com>
|
|
|
|
#
|
|
|
|
# This program is free software; you can redistribute it and/or
|
|
|
|
# modify it under the terms of version 2 of the GNU General Public
|
|
|
|
# License as published by the Free Software Foundation.
|
|
|
|
#
|
|
|
|
# This program is distributed in the hope that it will be useful,
|
|
|
|
# but WITHOUT ANY WARRANTY; without even the implied warranty of
|
|
|
|
# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
|
|
|
|
# GNU General Public License for more details.
|
|
|
|
#
|
|
|
|
# ----------------------------------------------------------------------
|
2013-08-06 01:53:28 +05:30
|
|
|
import argparse
|
2013-08-26 00:23:59 +05:30
|
|
|
import os
|
|
|
|
|
|
|
|
import apparmor.aa as apparmor
|
2017-06-15 18:22:43 +02:00
|
|
|
import apparmor.ui as aaui
|
2013-08-06 01:53:28 +05:30
|
|
|
|
2015-07-06 22:02:34 +02:00
|
|
|
# setup exception handling
|
|
|
|
from apparmor.fail import enable_aa_exception_handler
|
|
|
|
enable_aa_exception_handler()
|
|
|
|
|
2014-02-10 22:15:05 -08:00
|
|
|
# setup module translations
|
2014-02-11 16:23:21 -08:00
|
|
|
from apparmor.translations import init_translation
|
|
|
|
_ = init_translation()
|
2014-02-10 22:15:05 -08:00
|
|
|
|
2013-09-22 15:25:20 +05:30
|
|
|
parser = argparse.ArgumentParser(description=_('Process log entries to generate profiles'))
|
|
|
|
parser.add_argument('-d', '--dir', type=str, help=_('path to profiles'))
|
|
|
|
parser.add_argument('-f', '--file', type=str, help=_('path to logfile'))
|
|
|
|
parser.add_argument('-m', '--mark', type=str, help=_('mark in the log to start processing after'))
|
2017-06-15 18:22:43 +02:00
|
|
|
parser.add_argument('-j', '--json', action='store_true', help=_('Input and Output in JSON'))
|
2013-08-21 11:26:09 +05:30
|
|
|
args = parser.parse_args()
|
|
|
|
|
2017-06-15 18:22:43 +02:00
|
|
|
if args.json:
|
|
|
|
aaui.set_json_mode()
|
|
|
|
|
2013-09-20 19:20:41 +05:30
|
|
|
profiledir = args.dir
|
|
|
|
logmark = args.mark or ''
|
2013-08-21 11:26:09 +05:30
|
|
|
|
2017-03-02 21:21:53 +00:00
|
|
|
apparmor.init_aa()
|
2015-02-20 21:36:55 +01:00
|
|
|
apparmor.set_logfile(args.file)
|
2013-12-20 03:12:58 +05:30
|
|
|
|
2013-08-21 11:26:09 +05:30
|
|
|
aa_mountpoint = apparmor.check_for_apparmor()
|
|
|
|
if not aa_mountpoint:
|
2013-08-26 00:23:59 +05:30
|
|
|
raise apparmor.AppArmorException(_('It seems AppArmor was not started. Please enable AppArmor and try again.'))
|
2013-08-06 01:53:28 +05:30
|
|
|
|
2013-08-21 11:26:09 +05:30
|
|
|
if profiledir:
|
2013-09-22 23:49:19 +05:30
|
|
|
apparmor.profile_dir = apparmor.get_full_path(profiledir)
|
|
|
|
if not os.path.isdir(apparmor.profile_dir):
|
2013-08-26 00:23:59 +05:30
|
|
|
raise apparmor.AppArmorException("%s is not a directory."%profiledir)
|
2013-08-06 01:53:28 +05:30
|
|
|
|
2013-08-21 11:26:09 +05:30
|
|
|
apparmor.loadincludes()
|
2013-08-07 14:43:17 +05:30
|
|
|
|
2020-05-05 23:56:55 +02:00
|
|
|
apparmor.read_profiles(True)
|
2013-08-21 11:26:09 +05:30
|
|
|
apparmor.do_logprof_pass(logmark)
|
2013-08-06 01:53:28 +05:30
|
|
|
|