aa-logprof updates standard profiles instead off changing local/profile

Bug #850830 reported by Oscar Tiderman on 2011-09-15
This bug affects 3 people
Affects Status Importance Assigned to Milestone
apparmor (Ubuntu)

Bug Description

Sorry if this is misplaced, it's part bug, part suggestion. aa-logprof updates standard profiles in /etc/apparmor.d/usr.bin.profile which means every update the changes are being overwritten and aa-logprof needs to be ran again to update profiles. Instead I would prefer seeing aa-logprof profile changes being added to local/usr.bin.profile so they are kept on my machine also when app is updated.

ProblemType: Bug
DistroRelease: Ubuntu 11.04
Package: apparmor 2.6.1-0ubuntu3
ProcVersionSignature: Ubuntu 2.6.38-11.49-generic
Uname: Linux 2.6.38-11-generic x86_64
NonfreeKernelModules: wl
Architecture: amd64
Date: Thu Sep 15 13:36:29 2011
EcryptfsInUse: Yes
InstallationMedia: Ubuntu 10.04.1 LTS "Lucid Lynx" - Release amd64 (20100816.1)
ProcKernelCmdline: BOOT_IMAGE=/boot/vmlinuz-2.6.38-11-generic root=UUID=adcd4386-b57c-4559-9f81-74f2d5015771 ro crashkernel=384M-2G:64M,2G-:128M quiet splash vt.handoff=7
ProcVersionSignature_: Ubuntu 2.6.38-11.49-generic
SourcePackage: apparmor
UpgradeStatus: Upgraded to natty on 2011-08-26 (19 days ago)

Oscar Tiderman (oscar-tiderman) wrote :
Oscar Tiderman (oscar-tiderman) wrote :

In addition I think it should be considered to put "deny" lines in local/profile since theese can't be overridden from local/profile.

Changed in apparmor (Ubuntu):
status: New → Triaged
importance: Undecided → Wishlist
tags: added: aa-tools
Changed in apparmor:
importance: Undecided → Wishlist
status: New → Triaged
To post a comment you must log in.
This report contains Public information  Edit
Everyone can see this information.

Other bug subscribers