Unfortunately that didn't made any change. My /etc/apparmor.d/usr.bin.redshift now looks like follows.
/usr/bin/redshift {
dbus send bus="system" path="/org/freedesktop/DBus" interface="org.freedesktop.DBus" member="{GetNameOwner,StartServiceByName,AddMatch}",
dbus send bus="system" path="/org/freedesktop/GeoClue2/Manager" interface="org.freedesktop.DBus.Properties" member="GetAll",
dbus send bus="system" path="/org/freedesktop/GeoClue2/Manager" interface="org.freedesktop.GeoClue2.Manager" member="GetClient",
# Allow but log any other dbus activity audit dbus bus=system,
owner @{HOME}/.config/redshift.conf r, owner /run/user/*/redshift-shared-* rw, }
(The last three lines where already in that file) still tons of messages like this one:
[Do Jun 9 23:15:47 2022] audit: type=1420 audit(1654809348.128:59832): subj_apparmor=unconfined [Do Jun 9 23:15:47 2022] audit: type=1107 audit(1654809348.128:59833): pid=977 uid=103 auid=4294967295 ses=4294967295 subj=? msg='apparmor="ALLOWED" operation="dbus_method_call" bus="system" path="/org/freedesktop/DBus" interface="org.freedesktop.DBus" member="StartServiceByName" mask="send" name="org.freedesktop.DBus" pid=158627 label="/usr/bin/redshift" peer_label="unconfined" exe="/usr/bin/dbus-daemon" sauid=103 hostname=? addr=? terminal=?' [Do Jun 9 23:15:47 2022] audit: type=1420 audit(1654809348.128:59834): subj_apparmor=unconfined
Unfortunately that didn't made any change. My /etc/apparmor. d/usr.bin. redshift now looks like follows.
/usr/bin/redshift {
dbus send bus="system"
path=" /org/freedeskto p/DBus"
interface= "org.freedeskto p.DBus"
member= "{GetNameOwner, StartServiceByN ame,AddMatch} ",
dbus send bus="system"
path=" /org/freedeskto p/GeoClue2/ Manager"
interface= "org.freedeskto p.DBus. Properties"
member= "GetAll" ,
dbus send bus="system"
path=" /org/freedeskto p/GeoClue2/ Manager"
interface= "org.freedeskto p.GeoClue2. Manager"
member= "GetClient" ,
# Allow but log any other dbus activity
audit dbus bus=system,
owner @{HOME} /.config/ redshift. conf r, */redshift- shared- * rw,
owner /run/user/
}
(The last three lines where already in that file)
still tons of messages like this one:
[Do Jun 9 23:15:47 2022] audit: type=1420 audit(165480934 8.128:59832) : subj_apparmor= unconfined 8.128:59833) : pid=977 uid=103 auid=4294967295 ses=4294967295 subj=? msg='apparmor= "ALLOWED" operation= "dbus_method_ call" bus="system" path="/ org/freedesktop /DBus" interface= "org.freedeskto p.DBus" member= "StartServiceBy Name" mask="send" name="org. freedesktop. DBus" pid=158627 label=" /usr/bin/ redshift" peer_label= "unconfined"
exe= "/usr/bin/ dbus-daemon" sauid=103 hostname=? addr=? terminal=?' 8.128:59834) : subj_apparmor= unconfined
[Do Jun 9 23:15:47 2022] audit: type=1107 audit(165480934
[Do Jun 9 23:15:47 2022] audit: type=1420 audit(165480934