add apparmor profile for transmission-gtk
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
apparmor (Ubuntu) |
Incomplete
|
Wishlist
|
Unassigned | ||
transmission (Ubuntu) |
Confirmed
|
Wishlist
|
Unassigned |
Bug Description
There should be an apparmor profile for transmission-gtk. Attached is a draft for discussion.
ProblemType: Bug
DistroRelease: Ubuntu 14.04
Package: apparmor-profiles 2.8.0-0ubuntu38
ProcVersionSign
Uname: Linux 3.13.0-17-generic x86_64
ApportVersion: 2.13.3-0ubuntu1
Architecture: amd64
CurrentDesktop: LXDE
Date: Mon Mar 17 13:36:19 2014
InstallationDate: Installed on 2014-03-07 (9 days ago)
InstallationMedia: Lubuntu 14.04 "Trusty Tahr" - Alpha amd64+mac (20140307)
PackageArchitec
ProcKernelCmdline: BOOT_IMAGE=
SourcePackage: apparmor
UpgradeStatus: No upgrade log present (probably fresh install)
tags: | added: aa-policy |
Changed in apparmor (Ubuntu): | |
importance: | Undecided → Low |
Changed in transmission (Ubuntu): | |
importance: | Undecided → Low |
Changed in apparmor (Ubuntu): | |
importance: | Low → Wishlist |
Changed in transmission (Ubuntu): | |
importance: | Low → Wishlist |
Some notes without knowing transmission-gtk:
All the @{HOME}/... lines should have the "owner" flag added.
@{HOME} /.local/ share/gvfs- metadata/ home-84502876. log r, /.local/ share/gvfs- metadata/ root-65c8c135. log r, /.local/ share/gvfs- metadata/ root-d4e9f38e. log r,
@{HOME}
@{HOME}
Are those hex numbers in the filename a fixed value or random? Should it be home-*.log and root-*.log instead?
/tmp/** rw,
Adding the "owner" flag would be nice - and would mean that you can remove the line because "owner /tmp/**" is covered by abstractions/ user-tmp