With minimization enabled, test-apparmor.py fails in various places. One failure is the following, which causes a kernel NULL pointer dereference:
$ sudo /sbin/apparmor_parser --write-cache --replace -T /etc/apparmor.d/usr.bin.evince
This is worked around with the following:
$ sudo /sbin/apparmor_parser --write-cache --replace -T -O no-minimize /etc/apparmor.d/usr.bin.evince
Additionally, with minimization in effect, the python environment filtering tests fail, but with no denials in the log. Eg:
======================================================================
FAIL: test_envfilter_python (__main__.ApparmorEnvFilter)
Test python environment filtering (PYTHONPATH)
----------------------------------------------------------------------
...
IOError: invalid Python installation: unable to open /usr/include/python2.7/pyconfig.h (Permission denied)
With minimization enabled, test-apparmor.py fails in various places. One failure is the following, which causes a kernel NULL pointer dereference: parser --write-cache --replace -T /etc/apparmor. d/usr.bin. evince
$ sudo /sbin/apparmor_
This is worked around with the following: parser --write-cache --replace -T -O no-minimize /etc/apparmor. d/usr.bin. evince
$ sudo /sbin/apparmor_
Additionally, with minimization in effect, the python environment filtering tests fail, but with no denials in the log. Eg: ======= ======= ======= ======= ======= ======= ======= ======= ======= python (__main_ _.ApparmorEnvFi lter) ------- ------- ------- ------- ------- ------- ------- ------- ------- python2. 7/pyconfig. h (Permission denied)
=======
FAIL: test_envfilter_
Test python environment filtering (PYTHONPATH)
-------
...
IOError: invalid Python installation: unable to open /usr/include/
Disabling minimization allows these to complete.