mirror of
https://gitlab.com/apparmor/apparmor.git
synced 2025-03-06 17:31:01 +01:00
183 lines
5.4 KiB
Groff
183 lines
5.4 KiB
Groff
# vim:syntax=apparmor
|
|
# Last Modified: Wed Sep 7 21:32:52 2005
|
|
# ------------------------------------------------------------------
|
|
#
|
|
# Copyright (C) 2002-2005 Novell/SUSE
|
|
#
|
|
# This program is free software; you can redistribute it and/or
|
|
# modify it under the terms of version 2 of the GNU General Public
|
|
# License published by the Free Software Foundation.
|
|
#
|
|
# ----------------------------------------------------------------------
|
|
#
|
|
#
|
|
# Profile for Evolution 2.4:
|
|
#
|
|
# Covered scenarios:
|
|
#
|
|
# Receive Mail:
|
|
# IMAP/POP/Local
|
|
# Mark mail as junk mail
|
|
# Print mail message with lpr local
|
|
# Print mail message with cups remote
|
|
# View pdf attachements
|
|
# Decrypt using gpg
|
|
#
|
|
# Send Mail:
|
|
# SMTP/Sendmail
|
|
# Encrypt/Sign using gpg
|
|
#
|
|
# Contacts:
|
|
# Add/Edit/Delete local contacts
|
|
#
|
|
# Calendaring:
|
|
# Add Local calendar
|
|
# Add|Edit|Delete event to|in|from local calendar
|
|
# Publish free/busy information to webdav server
|
|
# Subscribe to webcal:// calendar
|
|
#
|
|
#
|
|
|
|
#include <tunables/global>
|
|
|
|
/opt/gnome/bin/evolution-2.4 {
|
|
#include <abstractions/base>
|
|
#include <abstractions/bash>
|
|
#include <abstractions/consoles>
|
|
#include <abstractions/fonts>
|
|
#include <abstractions/kde>
|
|
#include <abstractions/nameservice>
|
|
#include <abstractions/perl>
|
|
#include <abstractions/gnome>
|
|
#include <abstractions/user-mail>
|
|
#include <abstractions/user-write>
|
|
|
|
capability ipc_lock,
|
|
capability setuid,
|
|
|
|
/bin/basename ixr,
|
|
/bin/bash ix,
|
|
/bin/grep ixr,
|
|
/bin/netstat ixr,
|
|
/dev/random r,
|
|
/etc/cups/client.conf r,
|
|
/etc/cups/lpoptions r,
|
|
/etc/cups/printcap r,
|
|
/etc/mail/spamassassin r,
|
|
/etc/mail/spamassassin/* r,
|
|
/etc/mtab r,
|
|
/etc/opt/gnome/gnome-vfs-2.0/modules r,
|
|
/etc/opt/gnome/gnome-vfs-2.0/modules/*.conf r,
|
|
/etc/opt/gnome/pango/*.modules r,
|
|
/etc/opt/kde3/share/applications r,
|
|
/etc/opt/kde3/share/applications/kde r,
|
|
/etc/opt/kde3/share/applications/kde/*.desktop r,
|
|
/etc/opt/kde3/share/applications/mimeinfo.cache r,
|
|
/etc/rpc r,
|
|
/etc/xdg/menus/*.menu r,
|
|
/etc/xdg/menus/applications-merged r,
|
|
/etc/xdg/menus/applications-merged/*.menu r,
|
|
/etc/xml/*.xml r,
|
|
/etc/xml/catalog r,
|
|
|
|
@{HOMEDIRS} r,
|
|
@{HOMEDIRS}/* r,
|
|
@{HOME}* r,
|
|
@{HOME}/.AbiSuite/* r,
|
|
@{HOME}/.AbiSuite/AbiWord.Profile rw,
|
|
@{HOME}/.camel_certs/* rw,
|
|
@{HOME}/.evolution-composer.autosave-* lrw,
|
|
@{HOME}/.evolution/*.db rw,
|
|
@{HOME}/.evolution/cache/tmp r,
|
|
@{HOME}/.evolution/cache/tmp/** lrw,
|
|
@{HOME}/.evolution/calendar/config/** lrw,
|
|
@{HOME}/.evolution/calendar/local/** lrw,
|
|
@{HOME}/.evolution/camel-cert.db~ lrw,
|
|
@{HOME}/.evolution/mail/** lrw,
|
|
@{HOME}/.evolution/tasks/local/system/*.ics rw,
|
|
@{HOME}/.evolution/tasks/local/system/*.ics~ lrw,
|
|
@{HOME}/.gaim/blist.xml r,
|
|
@{HOME}/.gnome2/evolution-* lw,
|
|
@{HOME}/.gnome2/gnome-pilot.d/gpilotd rw,
|
|
@{HOME}/.gnome2/yelp rw,
|
|
@{HOME}/.gnome2/yelp.d/mozilla/** lrw,
|
|
@{HOME}/.gnome2_private w,
|
|
@{HOME}/.gnome2_private/Evolution rw,
|
|
@{HOME}/.kde/share/config/gtkrc-2.0 r,
|
|
@{HOME}/.mozilla/pluginreg.dat r,
|
|
@{HOME}/.qt/** lrw,
|
|
@{HOME}/.recently-used rw,
|
|
|
|
/opt/MozillaFirefox/bin/firefox.sh pxr,
|
|
/opt/MozillaFirefox/lib/mozilla-xremote-client pxr,
|
|
/opt/gnome/bin/AbiWord-2.2 uxr,
|
|
/opt/gnome/bin/bug-buddy uxr,
|
|
/opt/gnome/bin/conglomerate ux,
|
|
/opt/gnome/bin/evince ux,
|
|
/opt/gnome/bin/evolution-2.4 ixr,
|
|
/opt/gnome/bin/gpdf uxr,
|
|
/opt/gnome/bin/nautilus ux,
|
|
/opt/gnome/bin/yelp uxr,
|
|
/opt/gnome/lib/** r,
|
|
/opt/gnome/lib/GConf/2/gconfd-2 px,
|
|
/opt/gnome/lib/bonobo/bonobo-activation-server uxr,
|
|
/opt/gnome/lib/evolution-data-server-*/* r,
|
|
/opt/gnome/lib/evolution-data-server-1.2/evolution-data-server-1.4 pxr,
|
|
/opt/gnome/lib/evolution/** r,
|
|
/opt/gnome/lib/evolution/2.4/evolution-alarm-notify ixr,
|
|
/opt/gnome/lib/gnome-** r,
|
|
/opt/gnome/lib/gnome-spell/libgnome-spell-component-*.so r,
|
|
/opt/gnome/lib/gtk-** r,
|
|
/opt/gnome/lib/gtkhtml/libgnome-gtkhtml-editor-*.so r,
|
|
/opt/gnome/lib/libgnomeui/gnome_segv2 ixr,
|
|
/opt/gnome/lib/pango/** r,
|
|
/opt/gnome/share/** r,
|
|
/opt/kde3/bin/kde-config uxr,
|
|
/opt/kde3/bin/kghostview uxr,
|
|
/opt/kde3/bin/ksimus ux,
|
|
/opt/kde3/share/** r,
|
|
/opt/mozilla/bin/mozilla.sh pxr,
|
|
/opt/mozilla/lib/** r,
|
|
/proc/*/cmdline r,
|
|
/proc/meminfo r,
|
|
/proc/net r,
|
|
/proc/net/* r,
|
|
/proc/stat r,
|
|
/tmp r,
|
|
/tmp/* lrw,
|
|
/tmp/.ICE-unix/* w,
|
|
/tmp/gconfd-** r,
|
|
/tmp/orbit** lrw,
|
|
/usr/X11R6/bin/gv uxr,
|
|
/usr/bin/gdb uxr,
|
|
/usr/bin/gpg uxr,
|
|
/usr/bin/lpr uxr,
|
|
/usr/bin/ooo-wrapper ux,
|
|
/usr/bin/sa-learn uxr,
|
|
/usr/bin/scrollkeeper-config uxr,
|
|
/usr/bin/scrollkeeper-get-cl uxr,
|
|
/usr/bin/scrollkeeper-get-content-list uxr,
|
|
/usr/bin/spamassassin uxr,
|
|
/usr/bin/xpdf uxr,
|
|
/usr/bin/xscreensaver ux,
|
|
/usr/lib/aspell-** r,
|
|
/usr/lib/enchant r,
|
|
/usr/lib/enchant/*.* r,
|
|
/usr/lib/jvm/java-*/jre/lib/fonts r,
|
|
/usr/lib/jvm/java-*/jre/lib/fonts/* r,
|
|
/usr/lib/ooo-2.0/share/fonts r,
|
|
/usr/lib/ooo-2.0/share/fonts/** r,
|
|
/usr/sbin/sendmail uxr,
|
|
/usr/share/applications r,
|
|
/usr/share/applications/*.desktop r,
|
|
/usr/share/applications/mimeinfo.cache r,
|
|
/usr/share/icons r,
|
|
/usr/share/mime/** r,
|
|
/usr/share/spamassassin r,
|
|
/usr/share/spamassassin/*.cf r,
|
|
/usr/share/spamassassin/triplets.txt r,
|
|
/usr/share/xml/docbook/schema/** r,
|
|
/usr/X11R6/lib/Acrobat7/Resource/Font r,
|
|
/usr/X11R6/lib/Acrobat7/Resource/Font/** r,
|
|
/var/tmp r,
|
|
}
|