Julian Taylor (jtaylor) wrote :

apparmor accepts the PUx qualifier
but when aa-logprof updates a profile that uses that it transforms it to UPx which apparmor does not accept.
It then complains:
AppArmor parser error for /etc/apparmor.d/ in /etc/apparmor.d/ at line 22: syntax error, unexpected TOK_ID, expecting TOK_MODE

#include <tunables/global>

/home/jtaylor/tmp/ {
  #include <abstractions/base>
  #include <abstractions/bash>

  /usr/bin/gedit rPUx,


put something else than gedit in /home/jtaylor/tmp/ and run logprof and it will break the profile.