I think the approach here is correct for now, especially for this security update-- get the guest account confined with apparmor without dbus mediation (and remember the system bus will have policykit in effect too). This is what we did for other applications in Ubuntu in 13.10; we can examine more strict confinement going forward.
I think the approach here is correct for now, especially for this security update-- get the guest account confined with apparmor without dbus mediation (and remember the system bus will have policykit in effect too). This is what we did for other applications in Ubuntu in 13.10; we can examine more strict confinement going forward.