Adding custom apparmor rules
Zygmunt Krynicki
zygmunt.krynicki at canonical.com
Mon Nov 16 17:57:27 UTC 2015
On Thu, Nov 12, 2015 at 2:54 PM, Darren Landoll
<darren.landoll at gmail.com> wrote:
> I'm trying to add some apparmor rules to my snap for accessing
> additional /sys/... entries. The snap also has default rules from the
> mir_client capability, but seems to lose all of those default rules
> when I add my custom apparmor profile.
Hey
I'm working on a capability system. It's a bit premature to offer you
a chance to use it (it's not there by any chance, yet) but I'm curious
about the specific files and why you need to read them. Could you
expand on that please?
As for some tiny back-story: capabilities will let application
developers request access to certain hardware-related bits in a
meaningful way, better than the current hw-assign. See the discussion
on snappy-devel@ for more details.
Thanks
ZK
More information about the snappy-app-devel
mailing list