[apparmor] Need help on fixing firefox apparmor rule

Aaron Lewis the.warl0ck.1989 at gmail.com
Sat Nov 24 09:50:50 UTC 2012


Hi,

I run Arch Linux with apparmor enabled kernel (3.6.7), now I encountered
some problem with firefox,

It looked ugly, so I set the profile to complain mode, now I see this:

kernel: type=1400 audit(1353749970.556:556): apparmor="ALLOWED"
operation="open" parent=1 profile="/usr/lib/firefox/firefox{,*[^s][^h]}"
name=2F4170706C69636174696F6E2F7468656D65732F4C696F6E2D7468656D652D72656C6F61646564202F67746B2D322E302F67746B7263
pid=14778 comm="firefox" requested_mask="r" denied_mask="r" fsuid=1000
ouid=1000

How should I fix it? the "name" looked way too wired to me, should I just
add a "XXX r," ? Or it's something specific to .. dbus or systemd?

-- 
Best Regards,
Aaron Lewis - PGP: 0xDFE6C29E ( http://keyserver.veridis.com )
Finger Print: 9482 448F C7C3 896C 1DFE 7DD3 2492 A7D0 DFE6 C29E
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.ubuntu.com/archives/apparmor/attachments/20121124/ebd7f463/attachment.html>


More information about the AppArmor mailing list