Dovecot profile: Allow reading of /proc/sys/kernel/core_pattern

See <https://dovecot.org/bugreport.html>
This commit is contained in:
pyllyukko 2024-09-18 19:29:09 +03:00
parent e27b0ad2b6
commit 0a5a9c465f

View file

@ -45,6 +45,7 @@ profile dovecot /usr/{bin,sbin}/dovecot flags=(attach_disconnected) {
/etc/SuSE-release r, /etc/SuSE-release r,
@{PROC}/@{pid}/mounts r, @{PROC}/@{pid}/mounts r,
@{PROC}/sys/fs/suid_dumpable r, @{PROC}/sys/fs/suid_dumpable r,
@{PROC}/sys/kernel/core_pattern r,
/usr/bin/doveconf rix, /usr/bin/doveconf rix,
/usr/lib*/dovecot/anvil mrPx, /usr/lib*/dovecot/anvil mrPx,
/usr/lib*/dovecot/auth mrPx, /usr/lib*/dovecot/auth mrPx,