From d5d2aa4d03f373685be4e3b5b41adbe4c5fecb47 Mon Sep 17 00:00:00 2001 From: Julia Sarris Date: Mon, 10 Feb 2025 10:38:02 -0500 Subject: [PATCH] mnt mount rule change --- profiles/apparmor.d/fusermount3 | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/profiles/apparmor.d/fusermount3 b/profiles/apparmor.d/fusermount3 index ceaa201ed..d12cc00c2 100644 --- a/profiles/apparmor.d/fusermount3 +++ b/profiles/apparmor.d/fusermount3 @@ -10,13 +10,13 @@ profile fusermount3 /usr/bin/fusermount3 { capability dac_read_search, mount fstype=@{fuse_types} options=(nosuid,nodev,rw) -> @{HOME}/**/, - mount fstype=@{fuse_types} options=(nosuid,nodev,rw) -> /mnt/**/, + mount fstype=@{fuse_types} options=(nosuid,nodev,rw) -> /mnt/{,**/}, mount fstype=@{fuse_types} options=(nosuid,nodev,rw) -> @{run}/user/@{uid}/*/, mount fstype=@{fuse_types} options=(nosuid,nodev,rw) -> /media/**/, mount fstype=@{fuse_types} options=(nosuid,nodev,rw) -> /tmp/**/, umount @{HOME}/**/, - umount /mnt/**/, + umount /mnt/{,**/}, umount @{run}/user/@{uid}/*/, umount /media/**/, umount /tmp/**/,