systemd exclude rules don't take effect
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
aide (Ubuntu) |
New
|
Undecided
|
Unassigned |
Bug Description
A number of exclusion rules don't work with aide running on 22.04.
I'll just list two examples here, there's the /etc/aide/
If I take 31_aide_systemd as an example:
@@define RUNSYSD @@{RUN}/systemd
[...]
!/@@{RUNSYSD}
This won't take effect for some reason, the resulting aide database file will in fact include e.g. /run/systemd/
If I insert an explicit exclusion before everything else however, e.g. creating a /etc/aide/
!/run/systemd/
... in there, then aide won't include that in the database file.
It might be some innocent ordering issue I presume, but there are a lot of rule files and the maintainer might have some ideas as to why it's ordered like that.
In any case, it would be nice if the exclude rules worked - it's not only the /machines under /run/systemd, it's everything else too, that was just an example.
I have all the default rule files copied from /usr/share/
The release I'm using is
Description: Ubuntu Jammy Jellyfish (development branch)
Release: 22.04
And my aide version is
aide:
Installed: 0.17.4-1
Candidate: 0.17.4-1
Version table:
*** 0.17.4-1 500
500 http://
100 /var/lib/
description: | updated |
description: | updated |