aa-notify insists on admin group - even for root

Bug #1364665 reported by Christian Boltz
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
AppArmor
Fix Released
Medium
Unassigned

Bug Description

From a comment I just added to https://bugzilla.novell.com/show_bug.cgi?id=889318 (SLE12, therefore non-public)

If running aa-notify as "real" root (not user+sudo), it should skip the group check. A quick look at the code indicates that this is the plan, but there seems to be a bug somewhere that lets this planned behaviour fail.

Tags: aa-tools
Changed in apparmor:
importance: Undecided → Medium
status: New → Triaged
Christian Boltz (cboltz)
tags: added: aa-tools
Revision history for this message
Christian Boltz (cboltz) wrote :

Starting with AppArmor 2.13, the default notify.conf no longer has the group restriction and allows everybody to run aa-notify. Well, everybody who can read the audit.log ;-)

Changed in apparmor:
status: Triaged → Fix Released
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.