Advertisement
Guest User

skype apparmor

a guest
Jul 10th, 2014
276
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.56 KB | None | 0 0
  1. # Last Modified: Tue Jun 24 05:59:42 2014
  2. #include <tunables/global>
  3.  
  4. /usr/bin/skype {
  5. #include <abstractions/audio>
  6. #include <abstractions/consoles>
  7. #include <abstractions/dbus-session>
  8. #include <abstractions/gnome>
  9. #include <abstractions/kde>
  10. #include <abstractions/nameservice>
  11. #include <abstractions/video>
  12.  
  13. deny /sys/devices/virtual/dmi/** r,
  14. deny owner @{HOME}/docker** r,
  15. deny owner @{HOME}/.mozilla/ r,
  16. deny owner @{HOME}/.mozilla/** r,
  17.  
  18. # /dev/ r,
  19. /dev/video[0-9]* mrw,
  20. # /etc/ r,
  21. /etc/asound.conf r,
  22. /etc/machine-id r,
  23. /etc/xdg/Trolltech.conf r,
  24. # /etc/xdg/Trolltech.conf rk,
  25. /etc/xdg/sni-qt.conf r,
  26. # /etc/xdg/sni-qt.conf rk,
  27. /sys/devices/pci*/*/usb[0-9]*/*/{idVendor,idProduct,speed} r,
  28. /sys/devices/system/cpu/cpu[0-9]*/cpufreq/scaling_{cur_freq,max_freq} r,
  29. # /tmp/** rwlk,
  30. /usr/bin/kde4-config mrPUx,
  31. /usr/bin/skype mrix,
  32. /usr/bin/xdg-open mrPUx,
  33. /usr/lib{,32}/libv4l/v4l2convert.so r,
  34. # /usr/lib{,32}/libv4l/v4l2convert.so mr,
  35. /usr/lib{,32}/skype/skype mrix,
  36. /usr/share/icons/*/index.theme r,
  37. # /usr/share/icons/*/index.theme rk,
  38. /usr/share/nvidia/nvidia-application-profiles-*-rc r,
  39. # /usr/share/skype/ r,
  40. /usr/share/skype/** r,
  41. # /usr/share/skype/lib/libQtWebKit.so.4 mr,
  42. /{run,dev}/shm/pulse-shm* r,
  43. # /{run,dev}/shm/pulse-shm* rwk,
  44. # /home/ r,
  45. owner @{HOME}/ r,
  46. owner @{HOME}/.Xauthority r,
  47. owner @{HOME}/.cache/fontconfig/* r,
  48. owner @{HOME}/.kde/** r,
  49. owner @{HOME}/.Skype/ r,
  50. owner @{HOME}/.Skype/** rwk,
  51. owner @{HOME}/.config/Skype/ r,
  52. owner @{HOME}/.config/Skype/** rwk,
  53. owner @{HOME}/.config/Trolltech.conf r,
  54. # owner @{HOME}/.config/Trolltech.conf rwk,
  55. owner @{HOME}/.config/fontconfig/fonts.conf r,
  56. owner @{HOME}/.config/gtk-3.0/bookmarks r,
  57. owner @{HOME}/.config/oxygen-gtk/argb-apps.conf r,
  58. # owner @{HOME}/.config/oxygen-gtk/argb-apps.conf rw,
  59. owner @{HOME}/.config/pulse/cookie r,
  60. # owner @{HOME}/.config/pulse/cookie rwk,
  61. owner @{HOME}/.icons/** r,
  62. owner @{HOME}/.kde4/share/config/gtkrc-2.0 r,
  63. owner @{HOME}/.kde4/share/config/kdeglobals r,
  64. # owner @{HOME}/.kde4/share/config/kdeglobals rwk,
  65. owner @{HOME}/.kde4/share/config/oxygenrc r,
  66. owner @{HOME}/Downloads/ r,
  67. owner @{HOME}/Downloads/** rw,
  68. owner @{PROC}/[0-9]*/cmdline r,
  69. owner @{PROC}/[0-9]*/fd/ r,
  70. owner @{PROC}/[0-9]*/status r,
  71. owner @{PROC}/[0-9]*/task/ r,
  72. owner @{PROC}/[0-9]*/task/[0-9]*/stat r,
  73. @{PROC}/*/net/route r,
  74. @{PROC}/[0-9]*/net/arp r,
  75. @{PROC}/sys/kernel/{ostype,osrelease} r,
  76. @{PROC}/sys/vm/overcommit_memory r,
  77. }
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement