diff --git a/profiles/apparmor.d/usr.sbin.iotop-c b/profiles/apparmor.d/usr.sbin.iotop-c new file mode 100644 index 000000000..b4a4a9f0f --- /dev/null +++ b/profiles/apparmor.d/usr.sbin.iotop-c @@ -0,0 +1,24 @@ +abi , + +include + +/usr/sbin/iotop-c { + include + include + include + + capability net_admin, + capability sys_admin, + + /proc/*/cmdline r, + /proc/*/task/ r, + /usr/sbin/iotop-c mr, + owner /etc/nsswitch.conf r, + owner /etc/passwd r, + owner /proc/ r, + owner /proc/sys/kernel/task_delayacct rw, + owner /proc/vmstat r, + owner /root/.config/iotop/iotoprc rw, + +} +