Advertisement
mocart2

snaplog_jami

Jan 5th, 2021
243
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
Bash 194.19 KB | None | 0 0
  1. sudo snappy-debug
  2. INFO: Following '/var/log/syslog'. If have dropped messages, use:
  3. INFO: $ sudo journalctl --output=short --follow --all | sudo snappy-debug
  4. kernel.printk_ratelimit = 0
  5. = AppArmor =
  6. Time: Jan  5 11:54:58
  7. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap" name="/sys/kernel/mm/transparent_hugepage/hpage_pmd_size" pid=39687 comm="jami" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  8. File: /sys/kernel/mm/transparent_hugepage/hpage_pmd_size (read)
  9. Suggestion:
  10. * adjust program to not access '/sys/kernel/mm/transparent_hugepage/hpage_pmd_size'
  11.  
  12. = AppArmor =
  13. Time: Jan  5 11:54:58
  14. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap" name="/proc/version" pid=39687 comm="jami" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  15. File: /proc/version (read)
  16. Suggestion:
  17. * adjust program to not access '@{PROC}/version'
  18.  
  19. = AppArmor =
  20. Time: Jan  5 11:54:58
  21. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap" name="/proc/cmdline" pid=39687 comm="jami" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  22. File: /proc/cmdline (read)
  23. Suggestion:
  24. * adjust program to not access '@{PROC}/cmdline'
  25.  
  26. = AppArmor =
  27. Time: Jan  5 11:54:58
  28. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap" name="/snap/snapd/10707/usr/lib/snapd/info" pid=39687 comm="jami" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  29. File: /snap/snapd/10707/usr/lib/snapd/info (read)
  30. Suggestion:
  31. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  32.  
  33. = AppArmor =
  34. Time: Jan  5 11:54:58
  35. Log: apparmor="ALLOWED" operation="exec" profile="/usr/bin/snap" name="/snap/snapd/10707/usr/bin/snap" pid=39687 comm="jami" requested_mask="x" denied_mask="x" fsuid=1000 ouid=0 target="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap"
  36. File: /snap/snapd/10707/usr/bin/snap (exec)
  37. Suggestions:
  38. * adjust snap to ship 'snap'
  39. * adjust program to use relative paths if the snap already ships 'snap'
  40.  
  41. = AppArmor =
  42. Time: Jan  5 11:54:58
  43. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap" name="/snap/snapd/10707/usr/bin/snap" pid=39687 comm="snap" requested_mask="rm" denied_mask="rm" fsuid=1000 ouid=0
  44. File: /snap/snapd/10707/usr/bin/snap (mmap)
  45.  
  46. = AppArmor =
  47. Time: Jan  5 11:54:58
  48. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap" name="/usr/lib/x86_64-linux-gnu/ld-2.31.so" pid=39687 comm="snap" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  49. File: /usr/lib/x86_64-linux-gnu/ld-2.31.so (read)
  50. Suggestion:
  51. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  52.  
  53. = AppArmor =
  54. Time: Jan  5 11:54:58
  55. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap" name="/etc/ld.so.cache" pid=39687 comm="snap" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  56. File: /etc/ld.so.cache (read)
  57. Suggestions:
  58. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  59. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  60. * add 'system-files (see https://forum.snapcraft.io/t/the-system-files-interface for acceptance criteria)' to 'plugs'
  61.  
  62. = AppArmor =
  63. Time: Jan  5 11:54:58
  64. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap" name="/usr/lib/x86_64-linux-gnu/libpthread-2.31.so" pid=39687 comm="snap" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  65. File: /usr/lib/x86_64-linux-gnu/libpthread-2.31.so (read)
  66. Suggestion:
  67. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  68.  
  69. = AppArmor =
  70. Time: Jan  5 11:54:58
  71. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap" name="/usr/lib/x86_64-linux-gnu/libpthread-2.31.so" pid=39687 comm="snap" requested_mask="rm" denied_mask="rm" fsuid=1000 ouid=0
  72. File: /usr/lib/x86_64-linux-gnu/libpthread-2.31.so (mmap)
  73.  
  74. = AppArmor =
  75. Time: Jan  5 11:54:58
  76. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39687 comm="snap" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  77. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (read)
  78. Suggestion:
  79. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  80.  
  81. = AppArmor =
  82. Time: Jan  5 11:54:58
  83. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39687 comm="snap" requested_mask="rm" denied_mask="rm" fsuid=1000 ouid=0
  84. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (mmap)
  85.  
  86. = AppArmor =
  87. Time: Jan  5 11:54:58
  88. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap" name="/usr/lib/os-release" pid=39687 comm="snap" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  89. File: /usr/lib/os-release (read)
  90. Suggestion:
  91. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  92.  
  93. = AppArmor =
  94. Time: Jan  5 11:54:58
  95. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap" name="/proc/version" pid=39687 comm="snap" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  96. File: /proc/version (read)
  97. Suggestion:
  98. * adjust program to not access '@{PROC}/version'
  99.  
  100. = AppArmor =
  101. Time: Jan  5 11:54:58
  102. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap" name="/proc/sys/net/core/somaxconn" pid=39687 comm="snap" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  103. File: /proc/sys/net/core/somaxconn (read)
  104. Suggestions:
  105. * adjust program to not access '@{PROC}/sys/net/core/somaxconn'
  106. * add one of 'firewall-control, network-control, network-observe' to 'plugs'
  107. * add one of 'network, network-bind' to 'plugs'
  108.  
  109. = AppArmor =
  110. Time: Jan  5 11:54:58
  111. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap" name="/usr/share/locale-langpack/ru/LC_MESSAGES/snappy.mo" pid=39687 comm="snap" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  112. File: /usr/share/locale-langpack/ru/LC_MESSAGES/snappy.mo (read)
  113. Suggestion:
  114. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  115.  
  116. = AppArmor =
  117. Time: Jan  5 11:54:58
  118. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap" name="/proc/cmdline" pid=39687 comm="snap" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  119. File: /proc/cmdline (read)
  120. Suggestion:
  121. * adjust program to not access '@{PROC}/cmdline'
  122.  
  123. = AppArmor =
  124. Time: Jan  5 11:54:58
  125. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap" name="/snap/snapd/10707/usr/lib/snapd/snapd" pid=39687 comm="snap" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  126. File: /snap/snapd/10707/usr/lib/snapd/snapd (read)
  127. Suggestion:
  128. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  129.  
  130. = AppArmor =
  131. Time: Jan  5 11:54:58
  132. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap" name="/sys/kernel/security/apparmor/features/" pid=39687 comm="snap" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  133. File: /sys/kernel/security/apparmor/features/ (read)
  134. Suggestion:
  135. * adjust program to not access '/sys/kernel/security/apparmor/features/'
  136.  
  137. = AppArmor =
  138. Time: Jan  5 11:54:58
  139. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap" name="/proc/39687/mountinfo" pid=39687 comm="snap" requested_mask="r" denied_mask="r" fsuid=1000 ouid=1000
  140. File: /proc/39687/mountinfo (read)
  141. Suggestions:
  142. * adjust program to not access '@{PROC}/@{pid}/mountinfo'
  143. * add 'mount-observe' to 'plugs'
  144.  
  145. = AppArmor =
  146. Time: Jan  5 11:54:58
  147. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap" name="/etc/fstab" pid=39687 comm="snap" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  148. File: /etc/fstab (read)
  149. Suggestions:
  150. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  151. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  152. * add 'mount-observe' to 'plugs'
  153.  
  154. = AppArmor =
  155. Time: Jan  5 11:54:58
  156. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap" name="/proc/39687/mountinfo" pid=39687 comm="snap" requested_mask="r" denied_mask="r" fsuid=1000 ouid=1000
  157. File: /proc/39687/mountinfo (read)
  158. Suggestions:
  159. * adjust program to not access '@{PROC}/@{pid}/mountinfo'
  160. * add 'mount-observe' to 'plugs'
  161.  
  162. = AppArmor =
  163. Time: Jan  5 11:54:58
  164. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap" name="/proc/sys/kernel/seccomp/actions_avail" pid=39687 comm="snap" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  165. File: /proc/sys/kernel/seccomp/actions_avail (read)
  166. Suggestion:
  167. * adjust program to not access '@{PROC}/sys/kernel/seccomp/actions_avail'
  168.  
  169. = AppArmor =
  170. Time: Jan  5 11:54:58
  171. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap" name="/dev/null" pid=39687 comm="snap" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  172. File: /dev/null (read)
  173.  
  174. = AppArmor =
  175. Time: Jan  5 11:54:58
  176. Log: apparmor="ALLOWED" operation="exec" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap" name="/snap/snapd/10707/usr/lib/snapd/snap-seccomp" pid=39699 comm="snap" requested_mask="x" denied_mask="x" fsuid=1000 ouid=0 target="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-seccomp"
  177. File: /snap/snapd/10707/usr/lib/snapd/snap-seccomp (exec)
  178. Suggestions:
  179. * adjust snap to ship 'snap-seccomp'
  180. * adjust program to use relative paths if the snap already ships 'snap-seccomp'
  181.  
  182. = AppArmor =
  183. Time: Jan  5 11:54:58
  184. Log: apparmor="ALLOWED" operation="file_inherit" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-seccomp" name="/dev/null" pid=39699 comm="snap-seccomp" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  185. File: /dev/null (read)
  186.  
  187. = AppArmor =
  188. Time: Jan  5 11:54:58
  189. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-seccomp" name="/snap/snapd/10707/usr/lib/snapd/snap-seccomp" pid=39699 comm="snap-seccomp" requested_mask="rm" denied_mask="rm" fsuid=1000 ouid=0
  190. File: /snap/snapd/10707/usr/lib/snapd/snap-seccomp (mmap)
  191.  
  192. = AppArmor =
  193. Time: Jan  5 11:54:58
  194. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-seccomp" name="/usr/lib/x86_64-linux-gnu/ld-2.31.so" pid=39699 comm="snap-seccomp" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  195. File: /usr/lib/x86_64-linux-gnu/ld-2.31.so (read)
  196. Suggestion:
  197. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  198.  
  199. = AppArmor =
  200. Time: Jan  5 11:54:58
  201. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-seccomp" name="/etc/ld.so.cache" pid=39699 comm="snap-seccomp" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  202. File: /etc/ld.so.cache (read)
  203. Suggestions:
  204. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  205. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  206. * add 'system-files (see https://forum.snapcraft.io/t/the-system-files-interface for acceptance criteria)' to 'plugs'
  207.  
  208. = AppArmor =
  209. Time: Jan  5 11:54:58
  210. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-seccomp" name="/usr/lib/x86_64-linux-gnu/libpthread-2.31.so" pid=39699 comm="snap-seccomp" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  211. File: /usr/lib/x86_64-linux-gnu/libpthread-2.31.so (read)
  212. Suggestion:
  213. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  214.  
  215. = AppArmor =
  216. Time: Jan  5 11:54:58
  217. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-seccomp" name="/usr/lib/x86_64-linux-gnu/libpthread-2.31.so" pid=39699 comm="snap-seccomp" requested_mask="rm" denied_mask="rm" fsuid=1000 ouid=0
  218. File: /usr/lib/x86_64-linux-gnu/libpthread-2.31.so (mmap)
  219.  
  220. = AppArmor =
  221. Time: Jan  5 11:54:58
  222. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-seccomp" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39699 comm="snap-seccomp" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  223. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (read)
  224. Suggestion:
  225. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  226.  
  227. = AppArmor =
  228. Time: Jan  5 11:54:58
  229. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-seccomp" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39699 comm="snap-seccomp" requested_mask="rm" denied_mask="rm" fsuid=1000 ouid=0
  230. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (mmap)
  231.  
  232. = AppArmor =
  233. Time: Jan  5 11:54:58
  234. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-seccomp" name="/proc/sys/net/core/somaxconn" pid=39699 comm="snap-seccomp" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  235. File: /proc/sys/net/core/somaxconn (read)
  236. Suggestions:
  237. * adjust program to not access '@{PROC}/sys/net/core/somaxconn'
  238. * add one of 'firewall-control, network-control, network-observe' to 'plugs'
  239. * add one of 'network, network-bind' to 'plugs'
  240.  
  241. = AppArmor =
  242. Time: Jan  5 11:54:58
  243. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-seccomp" name="/snap/snapd/10707/usr/lib/snapd/snap-seccomp" pid=39699 comm="snap-seccomp" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  244. File: /snap/snapd/10707/usr/lib/snapd/snap-seccomp (read)
  245. Suggestion:
  246. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  247.  
  248. = AppArmor =
  249. Time: Jan  5 11:54:58
  250. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap" name="/var/lib/snapd/system-key" pid=39687 comm="snap" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  251. File: /var/lib/snapd/system-key (read)
  252. Suggestions:
  253. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  254. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  255.  
  256. = AppArmor =
  257. Time: Jan  5 11:54:58
  258. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap" name="/snap/jami/112/meta/snap.yaml" pid=39687 comm="snap" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  259. File: /snap/jami/112/meta/snap.yaml (read)
  260. Suggestion:
  261. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  262.  
  263. = AppArmor =
  264. Time: Jan  5 11:54:58
  265. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap" name="/etc/nsswitch.conf" pid=39687 comm="snap" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  266. File: /etc/nsswitch.conf (read)
  267. Suggestions:
  268. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  269. * add one of 'firewall-control, fwupd, network, network-bind, network-control, network-observe' to 'plugs'
  270.  
  271. = AppArmor =
  272. Time: Jan  5 11:54:58
  273. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap" name="/etc/ld.so.cache" pid=39687 comm="snap" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  274. File: /etc/ld.so.cache (read)
  275. Suggestions:
  276. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  277. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  278. * add 'system-files (see https://forum.snapcraft.io/t/the-system-files-interface for acceptance criteria)' to 'plugs'
  279.  
  280. = AppArmor =
  281. Time: Jan  5 11:54:58
  282. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap" name="/usr/lib/x86_64-linux-gnu/libnss_files-2.31.so" pid=39687 comm="snap" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  283. File: /usr/lib/x86_64-linux-gnu/libnss_files-2.31.so (read)
  284. Suggestion:
  285. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  286.  
  287. = AppArmor =
  288. Time: Jan  5 11:54:58
  289. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap" name="/usr/lib/x86_64-linux-gnu/libnss_files-2.31.so" pid=39687 comm="snap" requested_mask="rm" denied_mask="rm" fsuid=1000 ouid=0
  290. File: /usr/lib/x86_64-linux-gnu/libnss_files-2.31.so (mmap)
  291.  
  292. = AppArmor =
  293. Time: Jan  5 11:54:58
  294. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap" name="/etc/passwd" pid=39687 comm="snap" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  295. File: /etc/passwd (read)
  296. Suggestions:
  297. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  298. * add one of 'firewall-control, fwupd, network, network-bind, network-control, network-observe' to 'plugs'
  299.  
  300. = AppArmor =
  301. Time: Jan  5 11:54:58
  302. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap" name="/proc/39687/mountinfo" pid=39687 comm="snap" requested_mask="r" denied_mask="r" fsuid=1000 ouid=1000
  303. File: /proc/39687/mountinfo (read)
  304. Suggestions:
  305. * adjust program to not access '@{PROC}/@{pid}/mountinfo'
  306. * add 'mount-observe' to 'plugs'
  307.  
  308. = AppArmor =
  309. Time: Jan  5 11:54:58
  310. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap" name="/run/user/1000/gdm/Xauthority" pid=39687 comm="snap" requested_mask="r" denied_mask="r" fsuid=1000 ouid=1000
  311. File: /run/user/1000/gdm/Xauthority (read)
  312. Suggestions:
  313. * adjust program to use $SNAP_DATA
  314. * adjust program to use /run/shm/snap.$SNAP_NAME.*
  315. * adjust program to use /run/snap.$SNAP_NAME.*
  316. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  317.  
  318. = AppArmor =
  319. Time: Jan  5 11:54:58
  320. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap" name="/proc/39687/mountinfo" pid=39687 comm="snap" requested_mask="r" denied_mask="r" fsuid=1000 ouid=1000
  321. File: /proc/39687/mountinfo (read)
  322. Suggestions:
  323. * adjust program to not access '@{PROC}/@{pid}/mountinfo'
  324. * add 'mount-observe' to 'plugs'
  325.  
  326. = AppArmor =
  327. Time: Jan  5 11:54:58
  328. Log: apparmor="ALLOWED" operation="exec" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap" name="/snap/snapd/10707/usr/lib/snapd/snap-confine" pid=39687 comm="snap" requested_mask="x" denied_mask="x" fsuid=1000 ouid=0 target="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine"
  329. File: /snap/snapd/10707/usr/lib/snapd/snap-confine (exec)
  330. Suggestions:
  331. * adjust snap to ship 'snap-confine'
  332. * adjust program to use relative paths if the snap already ships 'snap-confine'
  333.  
  334. = AppArmor =
  335. Time: Jan  5 11:54:58
  336. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/snap/snapd/10707/usr/lib/snapd/snap-confine" pid=39687 comm="snap-confine" requested_mask="rm" denied_mask="rm" fsuid=0 ouid=0
  337. File: /snap/snapd/10707/usr/lib/snapd/snap-confine (mmap)
  338.  
  339. = AppArmor =
  340. Time: Jan  5 11:54:58
  341. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/usr/lib/x86_64-linux-gnu/ld-2.31.so" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  342. File: /usr/lib/x86_64-linux-gnu/ld-2.31.so (read)
  343. Suggestion:
  344. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  345.  
  346. = AppArmor =
  347. Time: Jan  5 11:54:58
  348. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/etc/ld.so.cache" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  349. File: /etc/ld.so.cache (read)
  350. Suggestions:
  351. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  352. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  353. * add 'system-files (see https://forum.snapcraft.io/t/the-system-files-interface for acceptance criteria)' to 'plugs'
  354.  
  355. = AppArmor =
  356. Time: Jan  5 11:54:58
  357. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/usr/lib/x86_64-linux-gnu/libudev.so.1.6.17" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  358. File: /usr/lib/x86_64-linux-gnu/libudev.so.1.6.17 (read)
  359. Suggestion:
  360. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  361.  
  362. = AppArmor =
  363. Time: Jan  5 11:54:58
  364. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/usr/lib/x86_64-linux-gnu/libudev.so.1.6.17" pid=39687 comm="snap-confine" requested_mask="rm" denied_mask="rm" fsuid=0 ouid=0
  365. File: /usr/lib/x86_64-linux-gnu/libudev.so.1.6.17 (mmap)
  366.  
  367. = AppArmor =
  368. Time: Jan  5 11:54:58
  369. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/usr/lib/x86_64-linux-gnu/libpthread-2.31.so" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  370. File: /usr/lib/x86_64-linux-gnu/libpthread-2.31.so (read)
  371. Suggestion:
  372. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  373.  
  374. = AppArmor =
  375. Time: Jan  5 11:54:58
  376. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/usr/lib/x86_64-linux-gnu/libpthread-2.31.so" pid=39687 comm="snap-confine" requested_mask="rm" denied_mask="rm" fsuid=0 ouid=0
  377. File: /usr/lib/x86_64-linux-gnu/libpthread-2.31.so (mmap)
  378.  
  379. = AppArmor =
  380. Time: Jan  5 11:54:58
  381. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  382. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (read)
  383. Suggestion:
  384. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  385.  
  386. = AppArmor =
  387. Time: Jan  5 11:54:58
  388. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39687 comm="snap-confine" requested_mask="rm" denied_mask="rm" fsuid=0 ouid=0
  389. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (mmap)
  390.  
  391. = AppArmor =
  392. Time: Jan  5 11:54:58
  393. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/var/lib/snapd/cookie/snap.jami" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  394. File: /var/lib/snapd/cookie/snap.jami (read)
  395. Suggestions:
  396. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  397. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  398.  
  399. = AppArmor =
  400. Time: Jan  5 11:54:58
  401. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/proc/39687/mounts" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  402. File: /proc/39687/mounts (read)
  403. Suggestions:
  404. * adjust program to not access '@{PROC}/@{pid}/mounts'
  405. * add one of 'mount-observe, network-control' to 'plugs'
  406.  
  407. = AppArmor =
  408. Time: Jan  5 11:54:58
  409. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/proc/39687/attr/current" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  410. File: /proc/39687/attr/current (read)
  411. Suggestion:
  412. * adjust program to not access '@{PROC}/@{pid}/attr/current'
  413.  
  414. = AppArmor =
  415. Time: Jan  5 11:54:58
  416. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" pid=39687 comm="snap-confine" capability=19  capname="sys_ptrace"
  417. Capability: sys_ptrace
  418. Suggestions:
  419. * adjust program to not require 'CAP_SYS_PTRACE' (see 'man 7 capabilities')
  420. * do nothing if program otherwise works properly
  421.  
  422. = AppArmor =
  423. Time: Jan  5 11:54:58
  424. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  425. File: / (read)
  426. Suggestions:
  427. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  428. * add 'network-control' to 'plugs'
  429.  
  430. = AppArmor =
  431. Time: Jan  5 11:54:58
  432. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/run/" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  433. File: /run/ (read)
  434. Suggestions:
  435. * adjust program to use $SNAP_DATA
  436. * adjust program to use /run/shm/snap.$SNAP_NAME.*
  437. * adjust program to use /run/snap.$SNAP_NAME.*
  438. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  439. * add one of 'network-setup-control, removable-media' to 'plugs'
  440.  
  441. = AppArmor =
  442. Time: Jan  5 11:54:58
  443. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/run/snapd/" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  444. File: /run/snapd/ (read)
  445. Suggestions:
  446. * adjust program to use $SNAP_DATA
  447. * adjust program to use /run/shm/snap.$SNAP_NAME.*
  448. * adjust program to use /run/snap.$SNAP_NAME.*
  449. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  450.  
  451. = AppArmor =
  452. Time: Jan  5 11:54:58
  453. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/run/snapd/lock/" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  454. File: /run/snapd/lock/ (read)
  455. Suggestions:
  456. * adjust program to use $SNAP_DATA
  457. * adjust program to use /run/shm/snap.$SNAP_NAME.*
  458. * adjust program to use /run/snap.$SNAP_NAME.*
  459. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  460.  
  461. = AppArmor =
  462. Time: Jan  5 11:54:58
  463. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/run/snapd/lock/.lock" pid=39687 comm="snap-confine" requested_mask="wrc" denied_mask="wrc" fsuid=0 ouid=0
  464. File: /run/snapd/lock/.lock (write)
  465. Suggestions:
  466. * adjust program to use $SNAP_DATA
  467. * adjust program to use /run/shm/snap.$SNAP_NAME.*
  468. * adjust program to use /run/snap.$SNAP_NAME.*
  469. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  470.  
  471. = AppArmor =
  472. Time: Jan  5 11:54:58
  473. Log: apparmor="ALLOWED" operation="file_lock" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/run/snapd/lock/.lock" pid=39687 comm="snap-confine" requested_mask="wk" denied_mask="wk" fsuid=0 ouid=0
  474. File: /run/snapd/lock/.lock (write)
  475. Suggestions:
  476. * adjust program to use $SNAP_DATA
  477. * adjust program to use /run/shm/snap.$SNAP_NAME.*
  478. * adjust program to use /run/snap.$SNAP_NAME.*
  479. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  480.  
  481. = AppArmor =
  482. Time: Jan  5 11:54:58
  483. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/proc/39687/mountinfo" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  484. File: /proc/39687/mountinfo (read)
  485. Suggestions:
  486. * adjust program to not access '@{PROC}/@{pid}/mountinfo'
  487. * add 'mount-observe' to 'plugs'
  488.  
  489. = AppArmor =
  490. Time: Jan  5 11:54:58
  491. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  492. File: / (read)
  493. Suggestions:
  494. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  495. * add 'network-control' to 'plugs'
  496.  
  497. = AppArmor =
  498. Time: Jan  5 11:54:58
  499. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/run/" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  500. File: /run/ (read)
  501. Suggestions:
  502. * adjust program to use $SNAP_DATA
  503. * adjust program to use /run/shm/snap.$SNAP_NAME.*
  504. * adjust program to use /run/snap.$SNAP_NAME.*
  505. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  506. * add one of 'network-setup-control, removable-media' to 'plugs'
  507.  
  508. = AppArmor =
  509. Time: Jan  5 11:54:58
  510. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/run/snapd/" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  511. File: /run/snapd/ (read)
  512. Suggestions:
  513. * adjust program to use $SNAP_DATA
  514. * adjust program to use /run/shm/snap.$SNAP_NAME.*
  515. * adjust program to use /run/snap.$SNAP_NAME.*
  516. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  517.  
  518. = AppArmor =
  519. Time: Jan  5 11:54:58
  520. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/run/snapd/ns/" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  521. File: /run/snapd/ns/ (read)
  522. Suggestions:
  523. * adjust program to use $SNAP_DATA
  524. * adjust program to use /run/shm/snap.$SNAP_NAME.*
  525. * adjust program to use /run/snap.$SNAP_NAME.*
  526. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  527.  
  528. = AppArmor =
  529. Time: Jan  5 11:54:58
  530. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/proc/39687/mountinfo" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  531. File: /proc/39687/mountinfo (read)
  532. Suggestions:
  533. * adjust program to not access '@{PROC}/@{pid}/mountinfo'
  534. * add 'mount-observe' to 'plugs'
  535.  
  536. = AppArmor =
  537. Time: Jan  5 11:54:58
  538. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  539. File: / (read)
  540. Suggestions:
  541. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  542. * add 'network-control' to 'plugs'
  543.  
  544. = AppArmor =
  545. Time: Jan  5 11:54:58
  546. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/run/" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  547. File: /run/ (read)
  548. Suggestions:
  549. * adjust program to use $SNAP_DATA
  550. * adjust program to use /run/shm/snap.$SNAP_NAME.*
  551. * adjust program to use /run/snap.$SNAP_NAME.*
  552. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  553. * add one of 'network-setup-control, removable-media' to 'plugs'
  554.  
  555. = AppArmor =
  556. Time: Jan  5 11:54:58
  557. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/run/snapd/" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  558. File: /run/snapd/ (read)
  559. Suggestions:
  560. * adjust program to use $SNAP_DATA
  561. * adjust program to use /run/shm/snap.$SNAP_NAME.*
  562. * adjust program to use /run/snap.$SNAP_NAME.*
  563. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  564.  
  565. = AppArmor =
  566. Time: Jan  5 11:54:58
  567. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/run/snapd/lock/" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  568. File: /run/snapd/lock/ (read)
  569. Suggestions:
  570. * adjust program to use $SNAP_DATA
  571. * adjust program to use /run/shm/snap.$SNAP_NAME.*
  572. * adjust program to use /run/snap.$SNAP_NAME.*
  573. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  574.  
  575. = AppArmor =
  576. Time: Jan  5 11:54:58
  577. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/run/snapd/lock/jami.lock" pid=39687 comm="snap-confine" requested_mask="wrc" denied_mask="wrc" fsuid=0 ouid=0
  578. File: /run/snapd/lock/jami.lock (write)
  579. Suggestions:
  580. * adjust program to use $SNAP_DATA
  581. * adjust program to use /run/shm/snap.$SNAP_NAME.*
  582. * adjust program to use /run/snap.$SNAP_NAME.*
  583. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  584.  
  585. = AppArmor =
  586. Time: Jan  5 11:54:58
  587. Log: apparmor="ALLOWED" operation="file_lock" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/run/snapd/lock/jami.lock" pid=39687 comm="snap-confine" requested_mask="wk" denied_mask="wk" fsuid=0 ouid=0
  588. File: /run/snapd/lock/jami.lock (write)
  589. Suggestions:
  590. * adjust program to use $SNAP_DATA
  591. * adjust program to use /run/shm/snap.$SNAP_NAME.*
  592. * adjust program to use /run/snap.$SNAP_NAME.*
  593. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  594.  
  595. = AppArmor =
  596. Time: Jan  5 11:54:58
  597. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/run/udev/tags/snap_jami_jami/" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  598. File: /run/udev/tags/snap_jami_jami/ (read)
  599. Suggestions:
  600. * adjust program to use $SNAP_DATA
  601. * adjust program to use /run/shm/snap.$SNAP_NAME.*
  602. * adjust program to use /run/snap.$SNAP_NAME.*
  603. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  604.  
  605. = AppArmor =
  606. Time: Jan  5 11:54:58
  607. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/sys/fs/cgroup/devices/snap.jami.jami/cgroup.procs" pid=39687 comm="snap-confine" requested_mask="wc" denied_mask="wc" fsuid=0 ouid=0
  608. File: /sys/fs/cgroup/devices/snap.jami.jami/cgroup.procs (write)
  609. Suggestion:
  610. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/cgroup.procs'
  611.  
  612. = AppArmor =
  613. Time: Jan  5 11:54:58
  614. Log: apparmor="ALLOWED" operation="truncate" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/sys/fs/cgroup/devices/snap.jami.jami/cgroup.procs" pid=39687 comm="snap-confine" requested_mask="w" denied_mask="w" fsuid=0 ouid=0
  615. File: /sys/fs/cgroup/devices/snap.jami.jami/cgroup.procs (write)
  616. Suggestion:
  617. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/cgroup.procs'
  618.  
  619. = AppArmor =
  620. Time: Jan  5 11:54:58
  621. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.deny" pid=39687 comm="snap-confine" requested_mask="wc" denied_mask="wc" fsuid=0 ouid=0
  622. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.deny (write)
  623. Suggestion:
  624. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.deny'
  625.  
  626. = AppArmor =
  627. Time: Jan  5 11:54:58
  628. Log: apparmor="ALLOWED" operation="truncate" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.deny" pid=39687 comm="snap-confine" requested_mask="w" denied_mask="w" fsuid=0 ouid=0
  629. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.deny (write)
  630. Suggestion:
  631. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.deny'
  632.  
  633. = AppArmor =
  634. Time: Jan  5 11:54:58
  635. Log: apparmor="ALLOWED" operation="exec" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/usr/lib/snapd/snap-device-helper" pid=39705 comm="snap-confine" requested_mask="x" denied_mask="x" fsuid=0 ouid=0 target="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper"
  636. File: /usr/lib/snapd/snap-device-helper (exec)
  637. Suggestions:
  638. * adjust snap to ship 'snap-device-helper'
  639. * adjust program to use relative paths if the snap already ships 'snap-device-helper'
  640.  
  641. = AppArmor =
  642. Time: Jan  5 11:54:58
  643. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/bin/dash" pid=39705 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  644. File: /usr/bin/dash (read)
  645. Suggestions:
  646. * adjust snap to ship 'dash'
  647. * adjust program to use relative paths if the snap already ships 'dash'
  648.  
  649. = AppArmor =
  650. Time: Jan  5 11:54:58
  651. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/ld-2.31.so" pid=39705 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  652. File: /usr/lib/x86_64-linux-gnu/ld-2.31.so (read)
  653. Suggestion:
  654. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  655.  
  656. = AppArmor =
  657. Time: Jan  5 11:54:58
  658. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/etc/ld.so.cache" pid=39705 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  659. File: /etc/ld.so.cache (read)
  660. Suggestions:
  661. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  662. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  663. * add 'system-files (see https://forum.snapcraft.io/t/the-system-files-interface for acceptance criteria)' to 'plugs'
  664.  
  665. = AppArmor =
  666. Time: Jan  5 11:54:58
  667. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39705 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  668. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (read)
  669. Suggestion:
  670. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  671.  
  672. = AppArmor =
  673. Time: Jan  5 11:54:58
  674. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39705 comm="snap-device-hel" requested_mask="rm" denied_mask="rm" fsuid=0 ouid=0
  675. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (mmap)
  676.  
  677. = AppArmor =
  678. Time: Jan  5 11:54:58
  679. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/snapd/snap-device-helper" pid=39705 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  680. File: /usr/lib/snapd/snap-device-helper (read)
  681. Suggestion:
  682. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  683.  
  684. = AppArmor =
  685. Time: Jan  5 11:54:58
  686. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39705 comm="snap-device-hel" requested_mask="wc" denied_mask="wc" fsuid=0 ouid=0
  687. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  688. Suggestion:
  689. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  690.  
  691. = AppArmor =
  692. Time: Jan  5 11:54:58
  693. Log: apparmor="ALLOWED" operation="truncate" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39705 comm="snap-device-hel" requested_mask="w" denied_mask="w" fsuid=0 ouid=0
  694. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  695. Suggestion:
  696. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  697.  
  698. = AppArmor =
  699. Time: Jan  5 11:54:58
  700. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" pid=39705 comm="snap-device-hel" capability=21  capname="sys_admin"
  701. Capability: sys_admin
  702. Suggestions:
  703. * adjust program to not require 'CAP_SYS_ADMIN' (see 'man 7 capabilities')
  704. * add one of 'cifs-mount, fuse-support, hardware-observe, hostname-control, network-control, system-trace' to 'plugs'
  705. * do nothing if program otherwise works properly
  706.  
  707. = AppArmor =
  708. Time: Jan  5 11:54:58
  709. Log: apparmor="ALLOWED" operation="exec" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/usr/lib/snapd/snap-device-helper" pid=39706 comm="snap-confine" requested_mask="x" denied_mask="x" fsuid=0 ouid=0 target="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper"
  710. File: /usr/lib/snapd/snap-device-helper (exec)
  711. Suggestions:
  712. * adjust snap to ship 'snap-device-helper'
  713. * adjust program to use relative paths if the snap already ships 'snap-device-helper'
  714.  
  715. = AppArmor =
  716. Time: Jan  5 11:54:58
  717. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/bin/dash" pid=39706 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  718. File: /usr/bin/dash (read)
  719. Suggestions:
  720. * adjust snap to ship 'dash'
  721. * adjust program to use relative paths if the snap already ships 'dash'
  722.  
  723. = AppArmor =
  724. Time: Jan  5 11:54:58
  725. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/ld-2.31.so" pid=39706 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  726. File: /usr/lib/x86_64-linux-gnu/ld-2.31.so (read)
  727. Suggestion:
  728. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  729.  
  730. = AppArmor =
  731. Time: Jan  5 11:54:58
  732. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/etc/ld.so.cache" pid=39706 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  733. File: /etc/ld.so.cache (read)
  734. Suggestions:
  735. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  736. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  737. * add 'system-files (see https://forum.snapcraft.io/t/the-system-files-interface for acceptance criteria)' to 'plugs'
  738.  
  739. = AppArmor =
  740. Time: Jan  5 11:54:58
  741. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39706 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  742. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (read)
  743. Suggestion:
  744. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  745.  
  746. = AppArmor =
  747. Time: Jan  5 11:54:58
  748. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39706 comm="snap-device-hel" requested_mask="rm" denied_mask="rm" fsuid=0 ouid=0
  749. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (mmap)
  750.  
  751. = AppArmor =
  752. Time: Jan  5 11:54:58
  753. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/snapd/snap-device-helper" pid=39706 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  754. File: /usr/lib/snapd/snap-device-helper (read)
  755. Suggestion:
  756. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  757.  
  758. = AppArmor =
  759. Time: Jan  5 11:54:58
  760. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39706 comm="snap-device-hel" requested_mask="wc" denied_mask="wc" fsuid=0 ouid=0
  761. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  762. Suggestion:
  763. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  764.  
  765. = AppArmor =
  766. Time: Jan  5 11:54:58
  767. Log: apparmor="ALLOWED" operation="truncate" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39706 comm="snap-device-hel" requested_mask="w" denied_mask="w" fsuid=0 ouid=0
  768. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  769. Suggestion:
  770. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  771.  
  772. = AppArmor =
  773. Time: Jan  5 11:54:58
  774. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" pid=39706 comm="snap-device-hel" capability=21  capname="sys_admin"
  775. Capability: sys_admin
  776. Suggestions:
  777. * adjust program to not require 'CAP_SYS_ADMIN' (see 'man 7 capabilities')
  778. * add one of 'cifs-mount, fuse-support, hardware-observe, hostname-control, network-control, system-trace' to 'plugs'
  779. * do nothing if program otherwise works properly
  780.  
  781. = AppArmor =
  782. Time: Jan  5 11:54:58
  783. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" pid=39707 comm="snap-confine" capability=7  capname="setuid"
  784. Capability: setuid
  785. Suggestions:
  786. * adjust program to not require 'CAP_SETUID' (see 'man 7 capabilities')
  787. * add one of 'firewall-control, network-control, network-observe, ppp' to 'plugs'
  788. * do nothing if program otherwise works properly
  789.  
  790. = AppArmor =
  791. Time: Jan  5 11:54:58
  792. Log: apparmor="ALLOWED" operation="exec" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/usr/lib/snapd/snap-device-helper" pid=39707 comm="snap-confine" requested_mask="x" denied_mask="x" fsuid=0 ouid=0 target="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper"
  793. File: /usr/lib/snapd/snap-device-helper (exec)
  794. Suggestions:
  795. * adjust snap to ship 'snap-device-helper'
  796. * adjust program to use relative paths if the snap already ships 'snap-device-helper'
  797.  
  798. = AppArmor =
  799. Time: Jan  5 11:54:58
  800. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/bin/dash" pid=39707 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  801. File: /usr/bin/dash (read)
  802. Suggestions:
  803. * adjust snap to ship 'dash'
  804. * adjust program to use relative paths if the snap already ships 'dash'
  805.  
  806. = AppArmor =
  807. Time: Jan  5 11:54:58
  808. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/ld-2.31.so" pid=39707 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  809. File: /usr/lib/x86_64-linux-gnu/ld-2.31.so (read)
  810. Suggestion:
  811. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  812.  
  813. = AppArmor =
  814. Time: Jan  5 11:54:58
  815. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/etc/ld.so.cache" pid=39707 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  816. File: /etc/ld.so.cache (read)
  817. Suggestions:
  818. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  819. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  820. * add 'system-files (see https://forum.snapcraft.io/t/the-system-files-interface for acceptance criteria)' to 'plugs'
  821.  
  822. = AppArmor =
  823. Time: Jan  5 11:54:58
  824. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39707 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  825. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (read)
  826. Suggestion:
  827. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  828.  
  829. = AppArmor =
  830. Time: Jan  5 11:54:58
  831. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39707 comm="snap-device-hel" requested_mask="rm" denied_mask="rm" fsuid=0 ouid=0
  832. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (mmap)
  833.  
  834. = AppArmor =
  835. Time: Jan  5 11:54:58
  836. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/snapd/snap-device-helper" pid=39707 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  837. File: /usr/lib/snapd/snap-device-helper (read)
  838. Suggestion:
  839. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  840.  
  841. = AppArmor =
  842. Time: Jan  5 11:54:58
  843. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39707 comm="snap-device-hel" requested_mask="wc" denied_mask="wc" fsuid=0 ouid=0
  844. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  845. Suggestion:
  846. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  847.  
  848. = AppArmor =
  849. Time: Jan  5 11:54:58
  850. Log: apparmor="ALLOWED" operation="truncate" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39707 comm="snap-device-hel" requested_mask="w" denied_mask="w" fsuid=0 ouid=0
  851. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  852. Suggestion:
  853. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  854.  
  855. = AppArmor =
  856. Time: Jan  5 11:54:58
  857. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" pid=39707 comm="snap-device-hel" capability=21  capname="sys_admin"
  858. Capability: sys_admin
  859. Suggestions:
  860. * adjust program to not require 'CAP_SYS_ADMIN' (see 'man 7 capabilities')
  861. * add one of 'cifs-mount, fuse-support, hardware-observe, hostname-control, network-control, system-trace' to 'plugs'
  862. * do nothing if program otherwise works properly
  863.  
  864. = AppArmor =
  865. Time: Jan  5 11:54:58
  866. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" pid=39708 comm="snap-confine" capability=7  capname="setuid"
  867. Capability: setuid
  868. Suggestions:
  869. * adjust program to not require 'CAP_SETUID' (see 'man 7 capabilities')
  870. * add one of 'firewall-control, network-control, network-observe, ppp' to 'plugs'
  871. * do nothing if program otherwise works properly
  872.  
  873. = AppArmor =
  874. Time: Jan  5 11:54:58
  875. Log: apparmor="ALLOWED" operation="exec" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/usr/lib/snapd/snap-device-helper" pid=39708 comm="snap-confine" requested_mask="x" denied_mask="x" fsuid=0 ouid=0 target="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper"
  876. File: /usr/lib/snapd/snap-device-helper (exec)
  877. Suggestions:
  878. * adjust snap to ship 'snap-device-helper'
  879. * adjust program to use relative paths if the snap already ships 'snap-device-helper'
  880.  
  881. = AppArmor =
  882. Time: Jan  5 11:54:58
  883. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/bin/dash" pid=39708 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  884. File: /usr/bin/dash (read)
  885. Suggestions:
  886. * adjust snap to ship 'dash'
  887. * adjust program to use relative paths if the snap already ships 'dash'
  888.  
  889. = AppArmor =
  890. Time: Jan  5 11:54:58
  891. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/ld-2.31.so" pid=39708 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  892. File: /usr/lib/x86_64-linux-gnu/ld-2.31.so (read)
  893. Suggestion:
  894. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  895.  
  896. = AppArmor =
  897. Time: Jan  5 11:54:58
  898. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/etc/ld.so.cache" pid=39708 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  899. File: /etc/ld.so.cache (read)
  900. Suggestions:
  901. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  902. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  903. * add 'system-files (see https://forum.snapcraft.io/t/the-system-files-interface for acceptance criteria)' to 'plugs'
  904.  
  905. = AppArmor =
  906. Time: Jan  5 11:54:58
  907. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39708 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  908. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (read)
  909. Suggestion:
  910. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  911.  
  912. = AppArmor =
  913. Time: Jan  5 11:54:58
  914. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39708 comm="snap-device-hel" requested_mask="rm" denied_mask="rm" fsuid=0 ouid=0
  915. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (mmap)
  916.  
  917. = AppArmor =
  918. Time: Jan  5 11:54:58
  919. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/snapd/snap-device-helper" pid=39708 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  920. File: /usr/lib/snapd/snap-device-helper (read)
  921. Suggestion:
  922. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  923.  
  924. = AppArmor =
  925. Time: Jan  5 11:54:58
  926. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39708 comm="snap-device-hel" requested_mask="wc" denied_mask="wc" fsuid=0 ouid=0
  927. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  928. Suggestion:
  929. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  930.  
  931. = AppArmor =
  932. Time: Jan  5 11:54:58
  933. Log: apparmor="ALLOWED" operation="truncate" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39708 comm="snap-device-hel" requested_mask="w" denied_mask="w" fsuid=0 ouid=0
  934. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  935. Suggestion:
  936. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  937.  
  938. = AppArmor =
  939. Time: Jan  5 11:54:58
  940. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" pid=39708 comm="snap-device-hel" capability=21  capname="sys_admin"
  941. Capability: sys_admin
  942. Suggestions:
  943. * adjust program to not require 'CAP_SYS_ADMIN' (see 'man 7 capabilities')
  944. * add one of 'cifs-mount, fuse-support, hardware-observe, hostname-control, network-control, system-trace' to 'plugs'
  945. * do nothing if program otherwise works properly
  946.  
  947. = AppArmor =
  948. Time: Jan  5 11:54:58
  949. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" pid=39709 comm="snap-confine" capability=7  capname="setuid"
  950. Capability: setuid
  951. Suggestions:
  952. * adjust program to not require 'CAP_SETUID' (see 'man 7 capabilities')
  953. * add one of 'firewall-control, network-control, network-observe, ppp' to 'plugs'
  954. * do nothing if program otherwise works properly
  955.  
  956. = AppArmor =
  957. Time: Jan  5 11:54:58
  958. Log: apparmor="ALLOWED" operation="exec" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/usr/lib/snapd/snap-device-helper" pid=39709 comm="snap-confine" requested_mask="x" denied_mask="x" fsuid=0 ouid=0 target="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper"
  959. File: /usr/lib/snapd/snap-device-helper (exec)
  960. Suggestions:
  961. * adjust snap to ship 'snap-device-helper'
  962. * adjust program to use relative paths if the snap already ships 'snap-device-helper'
  963.  
  964. = AppArmor =
  965. Time: Jan  5 11:54:58
  966. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/bin/dash" pid=39709 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  967. File: /usr/bin/dash (read)
  968. Suggestions:
  969. * adjust snap to ship 'dash'
  970. * adjust program to use relative paths if the snap already ships 'dash'
  971.  
  972. = AppArmor =
  973. Time: Jan  5 11:54:58
  974. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/ld-2.31.so" pid=39709 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  975. File: /usr/lib/x86_64-linux-gnu/ld-2.31.so (read)
  976. Suggestion:
  977. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  978.  
  979. = AppArmor =
  980. Time: Jan  5 11:54:58
  981. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/etc/ld.so.cache" pid=39709 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  982. File: /etc/ld.so.cache (read)
  983. Suggestions:
  984. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  985. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  986. * add 'system-files (see https://forum.snapcraft.io/t/the-system-files-interface for acceptance criteria)' to 'plugs'
  987.  
  988. = AppArmor =
  989. Time: Jan  5 11:54:58
  990. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39709 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  991. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (read)
  992. Suggestion:
  993. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  994.  
  995. = AppArmor =
  996. Time: Jan  5 11:54:58
  997. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39709 comm="snap-device-hel" requested_mask="rm" denied_mask="rm" fsuid=0 ouid=0
  998. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (mmap)
  999.  
  1000. = AppArmor =
  1001. Time: Jan  5 11:54:58
  1002. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/snapd/snap-device-helper" pid=39709 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1003. File: /usr/lib/snapd/snap-device-helper (read)
  1004. Suggestion:
  1005. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1006.  
  1007. = AppArmor =
  1008. Time: Jan  5 11:54:58
  1009. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39709 comm="snap-device-hel" requested_mask="wc" denied_mask="wc" fsuid=0 ouid=0
  1010. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  1011. Suggestion:
  1012. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  1013.  
  1014. = AppArmor =
  1015. Time: Jan  5 11:54:58
  1016. Log: apparmor="ALLOWED" operation="truncate" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39709 comm="snap-device-hel" requested_mask="w" denied_mask="w" fsuid=0 ouid=0
  1017. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  1018. Suggestion:
  1019. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  1020.  
  1021. = AppArmor =
  1022. Time: Jan  5 11:54:58
  1023. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" pid=39709 comm="snap-device-hel" capability=21  capname="sys_admin"
  1024. Capability: sys_admin
  1025. Suggestions:
  1026. * adjust program to not require 'CAP_SYS_ADMIN' (see 'man 7 capabilities')
  1027. * add one of 'cifs-mount, fuse-support, hardware-observe, hostname-control, network-control, system-trace' to 'plugs'
  1028. * do nothing if program otherwise works properly
  1029.  
  1030. = AppArmor =
  1031. Time: Jan  5 11:54:58
  1032. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" pid=39710 comm="snap-confine" capability=7  capname="setuid"
  1033. Capability: setuid
  1034. Suggestions:
  1035. * adjust program to not require 'CAP_SETUID' (see 'man 7 capabilities')
  1036. * add one of 'firewall-control, network-control, network-observe, ppp' to 'plugs'
  1037. * do nothing if program otherwise works properly
  1038.  
  1039. = AppArmor =
  1040. Time: Jan  5 11:54:58
  1041. Log: apparmor="ALLOWED" operation="exec" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/usr/lib/snapd/snap-device-helper" pid=39710 comm="snap-confine" requested_mask="x" denied_mask="x" fsuid=0 ouid=0 target="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper"
  1042. File: /usr/lib/snapd/snap-device-helper (exec)
  1043. Suggestions:
  1044. * adjust snap to ship 'snap-device-helper'
  1045. * adjust program to use relative paths if the snap already ships 'snap-device-helper'
  1046.  
  1047. = AppArmor =
  1048. Time: Jan  5 11:54:58
  1049. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/bin/dash" pid=39710 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1050. File: /usr/bin/dash (read)
  1051. Suggestions:
  1052. * adjust snap to ship 'dash'
  1053. * adjust program to use relative paths if the snap already ships 'dash'
  1054.  
  1055. = AppArmor =
  1056. Time: Jan  5 11:54:58
  1057. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/ld-2.31.so" pid=39710 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1058. File: /usr/lib/x86_64-linux-gnu/ld-2.31.so (read)
  1059. Suggestion:
  1060. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1061.  
  1062. = AppArmor =
  1063. Time: Jan  5 11:54:58
  1064. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/etc/ld.so.cache" pid=39710 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1065. File: /etc/ld.so.cache (read)
  1066. Suggestions:
  1067. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1068. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  1069. * add 'system-files (see https://forum.snapcraft.io/t/the-system-files-interface for acceptance criteria)' to 'plugs'
  1070.  
  1071. = AppArmor =
  1072. Time: Jan  5 11:54:58
  1073. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39710 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1074. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (read)
  1075. Suggestion:
  1076. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1077.  
  1078. = AppArmor =
  1079. Time: Jan  5 11:54:58
  1080. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39710 comm="snap-device-hel" requested_mask="rm" denied_mask="rm" fsuid=0 ouid=0
  1081. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (mmap)
  1082.  
  1083. = AppArmor =
  1084. Time: Jan  5 11:54:58
  1085. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/snapd/snap-device-helper" pid=39710 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1086. File: /usr/lib/snapd/snap-device-helper (read)
  1087. Suggestion:
  1088. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1089.  
  1090. = AppArmor =
  1091. Time: Jan  5 11:54:58
  1092. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39710 comm="snap-device-hel" requested_mask="wc" denied_mask="wc" fsuid=0 ouid=0
  1093. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  1094. Suggestion:
  1095. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  1096.  
  1097. = AppArmor =
  1098. Time: Jan  5 11:54:58
  1099. Log: apparmor="ALLOWED" operation="truncate" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39710 comm="snap-device-hel" requested_mask="w" denied_mask="w" fsuid=0 ouid=0
  1100. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  1101. Suggestion:
  1102. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  1103.  
  1104. = AppArmor =
  1105. Time: Jan  5 11:54:58
  1106. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" pid=39710 comm="snap-device-hel" capability=21  capname="sys_admin"
  1107. Capability: sys_admin
  1108. Suggestions:
  1109. * adjust program to not require 'CAP_SYS_ADMIN' (see 'man 7 capabilities')
  1110. * add one of 'cifs-mount, fuse-support, hardware-observe, hostname-control, network-control, system-trace' to 'plugs'
  1111. * do nothing if program otherwise works properly
  1112.  
  1113. = AppArmor =
  1114. Time: Jan  5 11:54:58
  1115. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" pid=39711 comm="snap-confine" capability=7  capname="setuid"
  1116. Capability: setuid
  1117. Suggestions:
  1118. * adjust program to not require 'CAP_SETUID' (see 'man 7 capabilities')
  1119. * add one of 'firewall-control, network-control, network-observe, ppp' to 'plugs'
  1120. * do nothing if program otherwise works properly
  1121.  
  1122. = AppArmor =
  1123. Time: Jan  5 11:54:58
  1124. Log: apparmor="ALLOWED" operation="exec" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/usr/lib/snapd/snap-device-helper" pid=39711 comm="snap-confine" requested_mask="x" denied_mask="x" fsuid=0 ouid=0 target="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper"
  1125. File: /usr/lib/snapd/snap-device-helper (exec)
  1126. Suggestions:
  1127. * adjust snap to ship 'snap-device-helper'
  1128. * adjust program to use relative paths if the snap already ships 'snap-device-helper'
  1129.  
  1130. = AppArmor =
  1131. Time: Jan  5 11:54:58
  1132. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/bin/dash" pid=39711 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1133. File: /usr/bin/dash (read)
  1134. Suggestions:
  1135. * adjust snap to ship 'dash'
  1136. * adjust program to use relative paths if the snap already ships 'dash'
  1137.  
  1138. = AppArmor =
  1139. Time: Jan  5 11:54:58
  1140. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/ld-2.31.so" pid=39711 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1141. File: /usr/lib/x86_64-linux-gnu/ld-2.31.so (read)
  1142. Suggestion:
  1143. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1144.  
  1145. = AppArmor =
  1146. Time: Jan  5 11:54:58
  1147. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/etc/ld.so.cache" pid=39711 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1148. File: /etc/ld.so.cache (read)
  1149. Suggestions:
  1150. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1151. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  1152. * add 'system-files (see https://forum.snapcraft.io/t/the-system-files-interface for acceptance criteria)' to 'plugs'
  1153.  
  1154. = AppArmor =
  1155. Time: Jan  5 11:54:58
  1156. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39711 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1157. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (read)
  1158. Suggestion:
  1159. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1160.  
  1161. = AppArmor =
  1162. Time: Jan  5 11:54:58
  1163. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39711 comm="snap-device-hel" requested_mask="rm" denied_mask="rm" fsuid=0 ouid=0
  1164. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (mmap)
  1165.  
  1166. = AppArmor =
  1167. Time: Jan  5 11:54:58
  1168. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/snapd/snap-device-helper" pid=39711 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1169. File: /usr/lib/snapd/snap-device-helper (read)
  1170. Suggestion:
  1171. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1172.  
  1173. = AppArmor =
  1174. Time: Jan  5 11:54:58
  1175. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39711 comm="snap-device-hel" requested_mask="wc" denied_mask="wc" fsuid=0 ouid=0
  1176. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  1177. Suggestion:
  1178. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  1179.  
  1180. = AppArmor =
  1181. Time: Jan  5 11:54:58
  1182. Log: apparmor="ALLOWED" operation="truncate" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39711 comm="snap-device-hel" requested_mask="w" denied_mask="w" fsuid=0 ouid=0
  1183. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  1184. Suggestion:
  1185. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  1186.  
  1187. = AppArmor =
  1188. Time: Jan  5 11:54:58
  1189. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" pid=39711 comm="snap-device-hel" capability=21  capname="sys_admin"
  1190. Capability: sys_admin
  1191. Suggestions:
  1192. * adjust program to not require 'CAP_SYS_ADMIN' (see 'man 7 capabilities')
  1193. * add one of 'cifs-mount, fuse-support, hardware-observe, hostname-control, network-control, system-trace' to 'plugs'
  1194. * do nothing if program otherwise works properly
  1195.  
  1196. = AppArmor =
  1197. Time: Jan  5 11:54:58
  1198. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" pid=39712 comm="snap-confine" capability=7  capname="setuid"
  1199. Capability: setuid
  1200. Suggestions:
  1201. * adjust program to not require 'CAP_SETUID' (see 'man 7 capabilities')
  1202. * add one of 'firewall-control, network-control, network-observe, ppp' to 'plugs'
  1203. * do nothing if program otherwise works properly
  1204.  
  1205. = AppArmor =
  1206. Time: Jan  5 11:54:58
  1207. Log: apparmor="ALLOWED" operation="exec" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/usr/lib/snapd/snap-device-helper" pid=39712 comm="snap-confine" requested_mask="x" denied_mask="x" fsuid=0 ouid=0 target="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper"
  1208. File: /usr/lib/snapd/snap-device-helper (exec)
  1209. Suggestions:
  1210. * adjust snap to ship 'snap-device-helper'
  1211. * adjust program to use relative paths if the snap already ships 'snap-device-helper'
  1212.  
  1213. = AppArmor =
  1214. Time: Jan  5 11:54:58
  1215. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/bin/dash" pid=39712 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1216. File: /usr/bin/dash (read)
  1217. Suggestions:
  1218. * adjust snap to ship 'dash'
  1219. * adjust program to use relative paths if the snap already ships 'dash'
  1220.  
  1221. = AppArmor =
  1222. Time: Jan  5 11:54:58
  1223. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/ld-2.31.so" pid=39712 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1224. File: /usr/lib/x86_64-linux-gnu/ld-2.31.so (read)
  1225. Suggestion:
  1226. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1227.  
  1228. = AppArmor =
  1229. Time: Jan  5 11:54:58
  1230. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/etc/ld.so.cache" pid=39712 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1231. File: /etc/ld.so.cache (read)
  1232. Suggestions:
  1233. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1234. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  1235. * add 'system-files (see https://forum.snapcraft.io/t/the-system-files-interface for acceptance criteria)' to 'plugs'
  1236.  
  1237. = AppArmor =
  1238. Time: Jan  5 11:54:58
  1239. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39712 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1240. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (read)
  1241. Suggestion:
  1242. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1243.  
  1244. = AppArmor =
  1245. Time: Jan  5 11:54:58
  1246. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39712 comm="snap-device-hel" requested_mask="rm" denied_mask="rm" fsuid=0 ouid=0
  1247. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (mmap)
  1248.  
  1249. = AppArmor =
  1250. Time: Jan  5 11:54:58
  1251. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/snapd/snap-device-helper" pid=39712 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1252. File: /usr/lib/snapd/snap-device-helper (read)
  1253. Suggestion:
  1254. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1255.  
  1256. = AppArmor =
  1257. Time: Jan  5 11:54:58
  1258. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39712 comm="snap-device-hel" requested_mask="wc" denied_mask="wc" fsuid=0 ouid=0
  1259. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  1260. Suggestion:
  1261. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  1262.  
  1263. = AppArmor =
  1264. Time: Jan  5 11:54:58
  1265. Log: apparmor="ALLOWED" operation="truncate" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39712 comm="snap-device-hel" requested_mask="w" denied_mask="w" fsuid=0 ouid=0
  1266. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  1267. Suggestion:
  1268. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  1269.  
  1270. = AppArmor =
  1271. Time: Jan  5 11:54:58
  1272. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" pid=39712 comm="snap-device-hel" capability=21  capname="sys_admin"
  1273. Capability: sys_admin
  1274. Suggestions:
  1275. * adjust program to not require 'CAP_SYS_ADMIN' (see 'man 7 capabilities')
  1276. * add one of 'cifs-mount, fuse-support, hardware-observe, hostname-control, network-control, system-trace' to 'plugs'
  1277. * do nothing if program otherwise works properly
  1278.  
  1279. = AppArmor =
  1280. Time: Jan  5 11:54:58
  1281. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" pid=39713 comm="snap-confine" capability=7  capname="setuid"
  1282. Capability: setuid
  1283. Suggestions:
  1284. * adjust program to not require 'CAP_SETUID' (see 'man 7 capabilities')
  1285. * add one of 'firewall-control, network-control, network-observe, ppp' to 'plugs'
  1286. * do nothing if program otherwise works properly
  1287.  
  1288. = AppArmor =
  1289. Time: Jan  5 11:54:58
  1290. Log: apparmor="ALLOWED" operation="exec" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/usr/lib/snapd/snap-device-helper" pid=39713 comm="snap-confine" requested_mask="x" denied_mask="x" fsuid=0 ouid=0 target="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper"
  1291. File: /usr/lib/snapd/snap-device-helper (exec)
  1292. Suggestions:
  1293. * adjust snap to ship 'snap-device-helper'
  1294. * adjust program to use relative paths if the snap already ships 'snap-device-helper'
  1295.  
  1296. = AppArmor =
  1297. Time: Jan  5 11:54:58
  1298. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/bin/dash" pid=39713 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1299. File: /usr/bin/dash (read)
  1300. Suggestions:
  1301. * adjust snap to ship 'dash'
  1302. * adjust program to use relative paths if the snap already ships 'dash'
  1303.  
  1304. = AppArmor =
  1305. Time: Jan  5 11:54:58
  1306. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/ld-2.31.so" pid=39713 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1307. File: /usr/lib/x86_64-linux-gnu/ld-2.31.so (read)
  1308. Suggestion:
  1309. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1310.  
  1311. = AppArmor =
  1312. Time: Jan  5 11:54:58
  1313. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/etc/ld.so.cache" pid=39713 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1314. File: /etc/ld.so.cache (read)
  1315. Suggestions:
  1316. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1317. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  1318. * add 'system-files (see https://forum.snapcraft.io/t/the-system-files-interface for acceptance criteria)' to 'plugs'
  1319.  
  1320. = AppArmor =
  1321. Time: Jan  5 11:54:58
  1322. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39713 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1323. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (read)
  1324. Suggestion:
  1325. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1326.  
  1327. = AppArmor =
  1328. Time: Jan  5 11:54:58
  1329. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39713 comm="snap-device-hel" requested_mask="rm" denied_mask="rm" fsuid=0 ouid=0
  1330. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (mmap)
  1331.  
  1332. = AppArmor =
  1333. Time: Jan  5 11:54:58
  1334. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/snapd/snap-device-helper" pid=39713 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1335. File: /usr/lib/snapd/snap-device-helper (read)
  1336. Suggestion:
  1337. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1338.  
  1339. = AppArmor =
  1340. Time: Jan  5 11:54:58
  1341. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39713 comm="snap-device-hel" requested_mask="wc" denied_mask="wc" fsuid=0 ouid=0
  1342. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  1343. Suggestion:
  1344. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  1345.  
  1346. = AppArmor =
  1347. Time: Jan  5 11:54:58
  1348. Log: apparmor="ALLOWED" operation="truncate" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39713 comm="snap-device-hel" requested_mask="w" denied_mask="w" fsuid=0 ouid=0
  1349. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  1350. Suggestion:
  1351. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  1352.  
  1353. = AppArmor =
  1354. Time: Jan  5 11:54:58
  1355. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" pid=39713 comm="snap-device-hel" capability=21  capname="sys_admin"
  1356. Capability: sys_admin
  1357. Suggestions:
  1358. * adjust program to not require 'CAP_SYS_ADMIN' (see 'man 7 capabilities')
  1359. * add one of 'cifs-mount, fuse-support, hardware-observe, hostname-control, network-control, system-trace' to 'plugs'
  1360. * do nothing if program otherwise works properly
  1361.  
  1362. = AppArmor =
  1363. Time: Jan  5 11:54:58
  1364. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" pid=39714 comm="snap-confine" capability=7  capname="setuid"
  1365. Capability: setuid
  1366. Suggestions:
  1367. * adjust program to not require 'CAP_SETUID' (see 'man 7 capabilities')
  1368. * add one of 'firewall-control, network-control, network-observe, ppp' to 'plugs'
  1369. * do nothing if program otherwise works properly
  1370.  
  1371. = AppArmor =
  1372. Time: Jan  5 11:54:58
  1373. Log: apparmor="ALLOWED" operation="exec" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/usr/lib/snapd/snap-device-helper" pid=39714 comm="snap-confine" requested_mask="x" denied_mask="x" fsuid=0 ouid=0 target="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper"
  1374. File: /usr/lib/snapd/snap-device-helper (exec)
  1375. Suggestions:
  1376. * adjust snap to ship 'snap-device-helper'
  1377. * adjust program to use relative paths if the snap already ships 'snap-device-helper'
  1378.  
  1379. = AppArmor =
  1380. Time: Jan  5 11:54:58
  1381. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/bin/dash" pid=39714 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1382. File: /usr/bin/dash (read)
  1383. Suggestions:
  1384. * adjust snap to ship 'dash'
  1385. * adjust program to use relative paths if the snap already ships 'dash'
  1386.  
  1387. = AppArmor =
  1388. Time: Jan  5 11:54:58
  1389. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/ld-2.31.so" pid=39714 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1390. File: /usr/lib/x86_64-linux-gnu/ld-2.31.so (read)
  1391. Suggestion:
  1392. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1393.  
  1394. = AppArmor =
  1395. Time: Jan  5 11:54:58
  1396. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/etc/ld.so.cache" pid=39714 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1397. File: /etc/ld.so.cache (read)
  1398. Suggestions:
  1399. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1400. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  1401. * add 'system-files (see https://forum.snapcraft.io/t/the-system-files-interface for acceptance criteria)' to 'plugs'
  1402.  
  1403. = AppArmor =
  1404. Time: Jan  5 11:54:58
  1405. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39714 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1406. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (read)
  1407. Suggestion:
  1408. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1409.  
  1410. = AppArmor =
  1411. Time: Jan  5 11:54:58
  1412. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39714 comm="snap-device-hel" requested_mask="rm" denied_mask="rm" fsuid=0 ouid=0
  1413. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (mmap)
  1414.  
  1415. = AppArmor =
  1416. Time: Jan  5 11:54:58
  1417. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/snapd/snap-device-helper" pid=39714 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1418. File: /usr/lib/snapd/snap-device-helper (read)
  1419. Suggestion:
  1420. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1421.  
  1422. = AppArmor =
  1423. Time: Jan  5 11:54:58
  1424. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39714 comm="snap-device-hel" requested_mask="wc" denied_mask="wc" fsuid=0 ouid=0
  1425. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  1426. Suggestion:
  1427. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  1428.  
  1429. = AppArmor =
  1430. Time: Jan  5 11:54:58
  1431. Log: apparmor="ALLOWED" operation="truncate" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39714 comm="snap-device-hel" requested_mask="w" denied_mask="w" fsuid=0 ouid=0
  1432. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  1433. Suggestion:
  1434. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  1435.  
  1436. = AppArmor =
  1437. Time: Jan  5 11:54:58
  1438. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" pid=39714 comm="snap-device-hel" capability=21  capname="sys_admin"
  1439. Capability: sys_admin
  1440. Suggestions:
  1441. * adjust program to not require 'CAP_SYS_ADMIN' (see 'man 7 capabilities')
  1442. * add one of 'cifs-mount, fuse-support, hardware-observe, hostname-control, network-control, system-trace' to 'plugs'
  1443. * do nothing if program otherwise works properly
  1444.  
  1445. = AppArmor =
  1446. Time: Jan  5 11:54:58
  1447. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" pid=39715 comm="snap-confine" capability=7  capname="setuid"
  1448. Capability: setuid
  1449. Suggestions:
  1450. * adjust program to not require 'CAP_SETUID' (see 'man 7 capabilities')
  1451. * add one of 'firewall-control, network-control, network-observe, ppp' to 'plugs'
  1452. * do nothing if program otherwise works properly
  1453.  
  1454. = AppArmor =
  1455. Time: Jan  5 11:54:58
  1456. Log: apparmor="ALLOWED" operation="exec" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/usr/lib/snapd/snap-device-helper" pid=39715 comm="snap-confine" requested_mask="x" denied_mask="x" fsuid=0 ouid=0 target="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper"
  1457. File: /usr/lib/snapd/snap-device-helper (exec)
  1458. Suggestions:
  1459. * adjust snap to ship 'snap-device-helper'
  1460. * adjust program to use relative paths if the snap already ships 'snap-device-helper'
  1461.  
  1462. = AppArmor =
  1463. Time: Jan  5 11:54:58
  1464. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/bin/dash" pid=39715 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1465. File: /usr/bin/dash (read)
  1466. Suggestions:
  1467. * adjust snap to ship 'dash'
  1468. * adjust program to use relative paths if the snap already ships 'dash'
  1469.  
  1470. = AppArmor =
  1471. Time: Jan  5 11:54:58
  1472. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/ld-2.31.so" pid=39715 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1473. File: /usr/lib/x86_64-linux-gnu/ld-2.31.so (read)
  1474. Suggestion:
  1475. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1476.  
  1477. = AppArmor =
  1478. Time: Jan  5 11:54:58
  1479. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/etc/ld.so.cache" pid=39715 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1480. File: /etc/ld.so.cache (read)
  1481. Suggestions:
  1482. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1483. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  1484. * add 'system-files (see https://forum.snapcraft.io/t/the-system-files-interface for acceptance criteria)' to 'plugs'
  1485.  
  1486. = AppArmor =
  1487. Time: Jan  5 11:54:58
  1488. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39715 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1489. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (read)
  1490. Suggestion:
  1491. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1492.  
  1493. = AppArmor =
  1494. Time: Jan  5 11:54:58
  1495. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39715 comm="snap-device-hel" requested_mask="rm" denied_mask="rm" fsuid=0 ouid=0
  1496. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (mmap)
  1497.  
  1498. = AppArmor =
  1499. Time: Jan  5 11:54:58
  1500. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/snapd/snap-device-helper" pid=39715 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1501. File: /usr/lib/snapd/snap-device-helper (read)
  1502. Suggestion:
  1503. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1504.  
  1505. = AppArmor =
  1506. Time: Jan  5 11:54:58
  1507. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39715 comm="snap-device-hel" requested_mask="wc" denied_mask="wc" fsuid=0 ouid=0
  1508. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  1509. Suggestion:
  1510. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  1511.  
  1512. = AppArmor =
  1513. Time: Jan  5 11:54:58
  1514. Log: apparmor="ALLOWED" operation="truncate" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39715 comm="snap-device-hel" requested_mask="w" denied_mask="w" fsuid=0 ouid=0
  1515. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  1516. Suggestion:
  1517. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  1518.  
  1519. = AppArmor =
  1520. Time: Jan  5 11:54:58
  1521. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" pid=39715 comm="snap-device-hel" capability=21  capname="sys_admin"
  1522. Capability: sys_admin
  1523. Suggestions:
  1524. * adjust program to not require 'CAP_SYS_ADMIN' (see 'man 7 capabilities')
  1525. * add one of 'cifs-mount, fuse-support, hardware-observe, hostname-control, network-control, system-trace' to 'plugs'
  1526. * do nothing if program otherwise works properly
  1527.  
  1528. = AppArmor =
  1529. Time: Jan  5 11:54:58
  1530. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" pid=39716 comm="snap-confine" capability=7  capname="setuid"
  1531. Capability: setuid
  1532. Suggestions:
  1533. * adjust program to not require 'CAP_SETUID' (see 'man 7 capabilities')
  1534. * add one of 'firewall-control, network-control, network-observe, ppp' to 'plugs'
  1535. * do nothing if program otherwise works properly
  1536.  
  1537. = AppArmor =
  1538. Time: Jan  5 11:54:58
  1539. Log: apparmor="ALLOWED" operation="exec" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/usr/lib/snapd/snap-device-helper" pid=39716 comm="snap-confine" requested_mask="x" denied_mask="x" fsuid=0 ouid=0 target="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper"
  1540. File: /usr/lib/snapd/snap-device-helper (exec)
  1541. Suggestions:
  1542. * adjust snap to ship 'snap-device-helper'
  1543. * adjust program to use relative paths if the snap already ships 'snap-device-helper'
  1544.  
  1545. = AppArmor =
  1546. Time: Jan  5 11:54:58
  1547. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/bin/dash" pid=39716 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1548. File: /usr/bin/dash (read)
  1549. Suggestions:
  1550. * adjust snap to ship 'dash'
  1551. * adjust program to use relative paths if the snap already ships 'dash'
  1552.  
  1553. = AppArmor =
  1554. Time: Jan  5 11:54:58
  1555. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/ld-2.31.so" pid=39716 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1556. File: /usr/lib/x86_64-linux-gnu/ld-2.31.so (read)
  1557. Suggestion:
  1558. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1559.  
  1560. = AppArmor =
  1561. Time: Jan  5 11:54:58
  1562. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/etc/ld.so.cache" pid=39716 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1563. File: /etc/ld.so.cache (read)
  1564. Suggestions:
  1565. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1566. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  1567. * add 'system-files (see https://forum.snapcraft.io/t/the-system-files-interface for acceptance criteria)' to 'plugs'
  1568.  
  1569. = AppArmor =
  1570. Time: Jan  5 11:54:58
  1571. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39716 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1572. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (read)
  1573. Suggestion:
  1574. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1575.  
  1576. = AppArmor =
  1577. Time: Jan  5 11:54:58
  1578. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39716 comm="snap-device-hel" requested_mask="rm" denied_mask="rm" fsuid=0 ouid=0
  1579. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (mmap)
  1580.  
  1581. = AppArmor =
  1582. Time: Jan  5 11:54:58
  1583. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/snapd/snap-device-helper" pid=39716 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1584. File: /usr/lib/snapd/snap-device-helper (read)
  1585. Suggestion:
  1586. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1587.  
  1588. = AppArmor =
  1589. Time: Jan  5 11:54:58
  1590. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39716 comm="snap-device-hel" requested_mask="wc" denied_mask="wc" fsuid=0 ouid=0
  1591. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  1592. Suggestion:
  1593. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  1594.  
  1595. = AppArmor =
  1596. Time: Jan  5 11:54:58
  1597. Log: apparmor="ALLOWED" operation="truncate" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39716 comm="snap-device-hel" requested_mask="w" denied_mask="w" fsuid=0 ouid=0
  1598. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  1599. Suggestion:
  1600. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  1601.  
  1602. = AppArmor =
  1603. Time: Jan  5 11:54:58
  1604. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" pid=39716 comm="snap-device-hel" capability=21  capname="sys_admin"
  1605. Capability: sys_admin
  1606. Suggestions:
  1607. * adjust program to not require 'CAP_SYS_ADMIN' (see 'man 7 capabilities')
  1608. * add one of 'cifs-mount, fuse-support, hardware-observe, hostname-control, network-control, system-trace' to 'plugs'
  1609. * do nothing if program otherwise works properly
  1610.  
  1611. = AppArmor =
  1612. Time: Jan  5 11:54:58
  1613. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" pid=39717 comm="snap-confine" capability=7  capname="setuid"
  1614. Capability: setuid
  1615. Suggestions:
  1616. * adjust program to not require 'CAP_SETUID' (see 'man 7 capabilities')
  1617. * add one of 'firewall-control, network-control, network-observe, ppp' to 'plugs'
  1618. * do nothing if program otherwise works properly
  1619.  
  1620. = AppArmor =
  1621. Time: Jan  5 11:54:58
  1622. Log: apparmor="ALLOWED" operation="exec" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/usr/lib/snapd/snap-device-helper" pid=39717 comm="snap-confine" requested_mask="x" denied_mask="x" fsuid=0 ouid=0 target="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper"
  1623. File: /usr/lib/snapd/snap-device-helper (exec)
  1624. Suggestions:
  1625. * adjust snap to ship 'snap-device-helper'
  1626. * adjust program to use relative paths if the snap already ships 'snap-device-helper'
  1627.  
  1628. = AppArmor =
  1629. Time: Jan  5 11:54:58
  1630. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/bin/dash" pid=39717 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1631. File: /usr/bin/dash (read)
  1632. Suggestions:
  1633. * adjust snap to ship 'dash'
  1634. * adjust program to use relative paths if the snap already ships 'dash'
  1635.  
  1636. = AppArmor =
  1637. Time: Jan  5 11:54:58
  1638. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/ld-2.31.so" pid=39717 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1639. File: /usr/lib/x86_64-linux-gnu/ld-2.31.so (read)
  1640. Suggestion:
  1641. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1642.  
  1643. = AppArmor =
  1644. Time: Jan  5 11:54:58
  1645. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/etc/ld.so.cache" pid=39717 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1646. File: /etc/ld.so.cache (read)
  1647. Suggestions:
  1648. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1649. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  1650. * add 'system-files (see https://forum.snapcraft.io/t/the-system-files-interface for acceptance criteria)' to 'plugs'
  1651.  
  1652. = AppArmor =
  1653. Time: Jan  5 11:54:58
  1654. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39717 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1655. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (read)
  1656. Suggestion:
  1657. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1658.  
  1659. = AppArmor =
  1660. Time: Jan  5 11:54:58
  1661. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39717 comm="snap-device-hel" requested_mask="rm" denied_mask="rm" fsuid=0 ouid=0
  1662. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (mmap)
  1663.  
  1664. = AppArmor =
  1665. Time: Jan  5 11:54:58
  1666. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/snapd/snap-device-helper" pid=39717 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1667. File: /usr/lib/snapd/snap-device-helper (read)
  1668. Suggestion:
  1669. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1670.  
  1671. = AppArmor =
  1672. Time: Jan  5 11:54:58
  1673. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39717 comm="snap-device-hel" requested_mask="wc" denied_mask="wc" fsuid=0 ouid=0
  1674. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  1675. Suggestion:
  1676. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  1677.  
  1678. = AppArmor =
  1679. Time: Jan  5 11:54:58
  1680. Log: apparmor="ALLOWED" operation="truncate" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39717 comm="snap-device-hel" requested_mask="w" denied_mask="w" fsuid=0 ouid=0
  1681. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  1682. Suggestion:
  1683. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  1684.  
  1685. = AppArmor =
  1686. Time: Jan  5 11:54:58
  1687. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" pid=39717 comm="snap-device-hel" capability=21  capname="sys_admin"
  1688. Capability: sys_admin
  1689. Suggestions:
  1690. * adjust program to not require 'CAP_SYS_ADMIN' (see 'man 7 capabilities')
  1691. * add one of 'cifs-mount, fuse-support, hardware-observe, hostname-control, network-control, system-trace' to 'plugs'
  1692. * do nothing if program otherwise works properly
  1693.  
  1694. = AppArmor =
  1695. Time: Jan  5 11:54:58
  1696. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" pid=39718 comm="snap-confine" capability=7  capname="setuid"
  1697. Capability: setuid
  1698. Suggestions:
  1699. * adjust program to not require 'CAP_SETUID' (see 'man 7 capabilities')
  1700. * add one of 'firewall-control, network-control, network-observe, ppp' to 'plugs'
  1701. * do nothing if program otherwise works properly
  1702.  
  1703. = AppArmor =
  1704. Time: Jan  5 11:54:58
  1705. Log: apparmor="ALLOWED" operation="exec" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/usr/lib/snapd/snap-device-helper" pid=39718 comm="snap-confine" requested_mask="x" denied_mask="x" fsuid=0 ouid=0 target="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper"
  1706. File: /usr/lib/snapd/snap-device-helper (exec)
  1707. Suggestions:
  1708. * adjust snap to ship 'snap-device-helper'
  1709. * adjust program to use relative paths if the snap already ships 'snap-device-helper'
  1710.  
  1711. = AppArmor =
  1712. Time: Jan  5 11:54:58
  1713. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/bin/dash" pid=39718 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1714. File: /usr/bin/dash (read)
  1715. Suggestions:
  1716. * adjust snap to ship 'dash'
  1717. * adjust program to use relative paths if the snap already ships 'dash'
  1718.  
  1719. = AppArmor =
  1720. Time: Jan  5 11:54:58
  1721. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/ld-2.31.so" pid=39718 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1722. File: /usr/lib/x86_64-linux-gnu/ld-2.31.so (read)
  1723. Suggestion:
  1724. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1725.  
  1726. = AppArmor =
  1727. Time: Jan  5 11:54:58
  1728. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/etc/ld.so.cache" pid=39718 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1729. File: /etc/ld.so.cache (read)
  1730. Suggestions:
  1731. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1732. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  1733. * add 'system-files (see https://forum.snapcraft.io/t/the-system-files-interface for acceptance criteria)' to 'plugs'
  1734.  
  1735. = AppArmor =
  1736. Time: Jan  5 11:54:58
  1737. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39718 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1738. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (read)
  1739. Suggestion:
  1740. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1741.  
  1742. = AppArmor =
  1743. Time: Jan  5 11:54:58
  1744. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39718 comm="snap-device-hel" requested_mask="rm" denied_mask="rm" fsuid=0 ouid=0
  1745. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (mmap)
  1746.  
  1747. = AppArmor =
  1748. Time: Jan  5 11:54:58
  1749. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/snapd/snap-device-helper" pid=39718 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1750. File: /usr/lib/snapd/snap-device-helper (read)
  1751. Suggestion:
  1752. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1753.  
  1754. = AppArmor =
  1755. Time: Jan  5 11:54:58
  1756. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39718 comm="snap-device-hel" requested_mask="wc" denied_mask="wc" fsuid=0 ouid=0
  1757. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  1758. Suggestion:
  1759. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  1760.  
  1761. = AppArmor =
  1762. Time: Jan  5 11:54:58
  1763. Log: apparmor="ALLOWED" operation="truncate" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39718 comm="snap-device-hel" requested_mask="w" denied_mask="w" fsuid=0 ouid=0
  1764. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  1765. Suggestion:
  1766. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  1767.  
  1768. = AppArmor =
  1769. Time: Jan  5 11:54:58
  1770. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" pid=39718 comm="snap-device-hel" capability=21  capname="sys_admin"
  1771. Capability: sys_admin
  1772. Suggestions:
  1773. * adjust program to not require 'CAP_SYS_ADMIN' (see 'man 7 capabilities')
  1774. * add one of 'cifs-mount, fuse-support, hardware-observe, hostname-control, network-control, system-trace' to 'plugs'
  1775. * do nothing if program otherwise works properly
  1776.  
  1777. = AppArmor =
  1778. Time: Jan  5 11:54:58
  1779. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" pid=39719 comm="snap-confine" capability=7  capname="setuid"
  1780. Capability: setuid
  1781. Suggestions:
  1782. * adjust program to not require 'CAP_SETUID' (see 'man 7 capabilities')
  1783. * add one of 'firewall-control, network-control, network-observe, ppp' to 'plugs'
  1784. * do nothing if program otherwise works properly
  1785.  
  1786. = AppArmor =
  1787. Time: Jan  5 11:54:58
  1788. Log: apparmor="ALLOWED" operation="exec" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/usr/lib/snapd/snap-device-helper" pid=39719 comm="snap-confine" requested_mask="x" denied_mask="x" fsuid=0 ouid=0 target="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper"
  1789. File: /usr/lib/snapd/snap-device-helper (exec)
  1790. Suggestions:
  1791. * adjust snap to ship 'snap-device-helper'
  1792. * adjust program to use relative paths if the snap already ships 'snap-device-helper'
  1793.  
  1794. = AppArmor =
  1795. Time: Jan  5 11:54:58
  1796. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/bin/dash" pid=39719 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1797. File: /usr/bin/dash (read)
  1798. Suggestions:
  1799. * adjust snap to ship 'dash'
  1800. * adjust program to use relative paths if the snap already ships 'dash'
  1801.  
  1802. = AppArmor =
  1803. Time: Jan  5 11:54:58
  1804. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/ld-2.31.so" pid=39719 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1805. File: /usr/lib/x86_64-linux-gnu/ld-2.31.so (read)
  1806. Suggestion:
  1807. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1808.  
  1809. = AppArmor =
  1810. Time: Jan  5 11:54:58
  1811. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/etc/ld.so.cache" pid=39719 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1812. File: /etc/ld.so.cache (read)
  1813. Suggestions:
  1814. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1815. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  1816. * add 'system-files (see https://forum.snapcraft.io/t/the-system-files-interface for acceptance criteria)' to 'plugs'
  1817.  
  1818. = AppArmor =
  1819. Time: Jan  5 11:54:58
  1820. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39719 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1821. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (read)
  1822. Suggestion:
  1823. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1824.  
  1825. = AppArmor =
  1826. Time: Jan  5 11:54:58
  1827. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39719 comm="snap-device-hel" requested_mask="rm" denied_mask="rm" fsuid=0 ouid=0
  1828. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (mmap)
  1829.  
  1830. = AppArmor =
  1831. Time: Jan  5 11:54:58
  1832. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/snapd/snap-device-helper" pid=39719 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1833. File: /usr/lib/snapd/snap-device-helper (read)
  1834. Suggestion:
  1835. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1836.  
  1837. = AppArmor =
  1838. Time: Jan  5 11:54:58
  1839. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39719 comm="snap-device-hel" requested_mask="wc" denied_mask="wc" fsuid=0 ouid=0
  1840. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  1841. Suggestion:
  1842. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  1843.  
  1844. = AppArmor =
  1845. Time: Jan  5 11:54:58
  1846. Log: apparmor="ALLOWED" operation="truncate" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39719 comm="snap-device-hel" requested_mask="w" denied_mask="w" fsuid=0 ouid=0
  1847. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  1848. Suggestion:
  1849. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  1850.  
  1851. = AppArmor =
  1852. Time: Jan  5 11:54:58
  1853. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" pid=39719 comm="snap-device-hel" capability=21  capname="sys_admin"
  1854. Capability: sys_admin
  1855. Suggestions:
  1856. * adjust program to not require 'CAP_SYS_ADMIN' (see 'man 7 capabilities')
  1857. * add one of 'cifs-mount, fuse-support, hardware-observe, hostname-control, network-control, system-trace' to 'plugs'
  1858. * do nothing if program otherwise works properly
  1859.  
  1860. = AppArmor =
  1861. Time: Jan  5 11:54:58
  1862. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" pid=39720 comm="snap-confine" capability=7  capname="setuid"
  1863. Capability: setuid
  1864. Suggestions:
  1865. * adjust program to not require 'CAP_SETUID' (see 'man 7 capabilities')
  1866. * add one of 'firewall-control, network-control, network-observe, ppp' to 'plugs'
  1867. * do nothing if program otherwise works properly
  1868.  
  1869. = AppArmor =
  1870. Time: Jan  5 11:54:58
  1871. Log: apparmor="ALLOWED" operation="exec" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/usr/lib/snapd/snap-device-helper" pid=39720 comm="snap-confine" requested_mask="x" denied_mask="x" fsuid=0 ouid=0 target="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper"
  1872. File: /usr/lib/snapd/snap-device-helper (exec)
  1873. Suggestions:
  1874. * adjust snap to ship 'snap-device-helper'
  1875. * adjust program to use relative paths if the snap already ships 'snap-device-helper'
  1876.  
  1877. = AppArmor =
  1878. Time: Jan  5 11:54:58
  1879. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/bin/dash" pid=39720 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1880. File: /usr/bin/dash (read)
  1881. Suggestions:
  1882. * adjust snap to ship 'dash'
  1883. * adjust program to use relative paths if the snap already ships 'dash'
  1884.  
  1885. = AppArmor =
  1886. Time: Jan  5 11:54:58
  1887. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/ld-2.31.so" pid=39720 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1888. File: /usr/lib/x86_64-linux-gnu/ld-2.31.so (read)
  1889. Suggestion:
  1890. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1891.  
  1892. = AppArmor =
  1893. Time: Jan  5 11:54:58
  1894. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/etc/ld.so.cache" pid=39720 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1895. File: /etc/ld.so.cache (read)
  1896. Suggestions:
  1897. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1898. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  1899. * add 'system-files (see https://forum.snapcraft.io/t/the-system-files-interface for acceptance criteria)' to 'plugs'
  1900.  
  1901. = AppArmor =
  1902. Time: Jan  5 11:54:58
  1903. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39720 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1904. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (read)
  1905. Suggestion:
  1906. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1907.  
  1908. = AppArmor =
  1909. Time: Jan  5 11:54:58
  1910. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39720 comm="snap-device-hel" requested_mask="rm" denied_mask="rm" fsuid=0 ouid=0
  1911. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (mmap)
  1912.  
  1913. = AppArmor =
  1914. Time: Jan  5 11:54:58
  1915. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/snapd/snap-device-helper" pid=39720 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1916. File: /usr/lib/snapd/snap-device-helper (read)
  1917. Suggestion:
  1918. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1919.  
  1920. = AppArmor =
  1921. Time: Jan  5 11:54:58
  1922. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39720 comm="snap-device-hel" requested_mask="wc" denied_mask="wc" fsuid=0 ouid=0
  1923. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  1924. Suggestion:
  1925. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  1926.  
  1927. = AppArmor =
  1928. Time: Jan  5 11:54:58
  1929. Log: apparmor="ALLOWED" operation="truncate" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39720 comm="snap-device-hel" requested_mask="w" denied_mask="w" fsuid=0 ouid=0
  1930. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  1931. Suggestion:
  1932. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  1933.  
  1934. = AppArmor =
  1935. Time: Jan  5 11:54:58
  1936. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" pid=39720 comm="snap-device-hel" capability=21  capname="sys_admin"
  1937. Capability: sys_admin
  1938. Suggestions:
  1939. * adjust program to not require 'CAP_SYS_ADMIN' (see 'man 7 capabilities')
  1940. * add one of 'cifs-mount, fuse-support, hardware-observe, hostname-control, network-control, system-trace' to 'plugs'
  1941. * do nothing if program otherwise works properly
  1942.  
  1943. = AppArmor =
  1944. Time: Jan  5 11:54:58
  1945. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" pid=39721 comm="snap-confine" capability=7  capname="setuid"
  1946. Capability: setuid
  1947. Suggestions:
  1948. * adjust program to not require 'CAP_SETUID' (see 'man 7 capabilities')
  1949. * add one of 'firewall-control, network-control, network-observe, ppp' to 'plugs'
  1950. * do nothing if program otherwise works properly
  1951.  
  1952. = AppArmor =
  1953. Time: Jan  5 11:54:58
  1954. Log: apparmor="ALLOWED" operation="exec" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/usr/lib/snapd/snap-device-helper" pid=39721 comm="snap-confine" requested_mask="x" denied_mask="x" fsuid=0 ouid=0 target="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper"
  1955. File: /usr/lib/snapd/snap-device-helper (exec)
  1956. Suggestions:
  1957. * adjust snap to ship 'snap-device-helper'
  1958. * adjust program to use relative paths if the snap already ships 'snap-device-helper'
  1959.  
  1960. = AppArmor =
  1961. Time: Jan  5 11:54:58
  1962. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/bin/dash" pid=39721 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1963. File: /usr/bin/dash (read)
  1964. Suggestions:
  1965. * adjust snap to ship 'dash'
  1966. * adjust program to use relative paths if the snap already ships 'dash'
  1967.  
  1968. = AppArmor =
  1969. Time: Jan  5 11:54:58
  1970. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/ld-2.31.so" pid=39721 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1971. File: /usr/lib/x86_64-linux-gnu/ld-2.31.so (read)
  1972. Suggestion:
  1973. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1974.  
  1975. = AppArmor =
  1976. Time: Jan  5 11:54:58
  1977. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/etc/ld.so.cache" pid=39721 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1978. File: /etc/ld.so.cache (read)
  1979. Suggestions:
  1980. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1981. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  1982. * add 'system-files (see https://forum.snapcraft.io/t/the-system-files-interface for acceptance criteria)' to 'plugs'
  1983.  
  1984. = AppArmor =
  1985. Time: Jan  5 11:54:58
  1986. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39721 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1987. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (read)
  1988. Suggestion:
  1989. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  1990.  
  1991. = AppArmor =
  1992. Time: Jan  5 11:54:58
  1993. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39721 comm="snap-device-hel" requested_mask="rm" denied_mask="rm" fsuid=0 ouid=0
  1994. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (mmap)
  1995.  
  1996. = AppArmor =
  1997. Time: Jan  5 11:54:58
  1998. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/snapd/snap-device-helper" pid=39721 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  1999. File: /usr/lib/snapd/snap-device-helper (read)
  2000. Suggestion:
  2001. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  2002.  
  2003. = AppArmor =
  2004. Time: Jan  5 11:54:58
  2005. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39721 comm="snap-device-hel" requested_mask="wc" denied_mask="wc" fsuid=0 ouid=0
  2006. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  2007. Suggestion:
  2008. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  2009.  
  2010. = AppArmor =
  2011. Time: Jan  5 11:54:58
  2012. Log: apparmor="ALLOWED" operation="truncate" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39721 comm="snap-device-hel" requested_mask="w" denied_mask="w" fsuid=0 ouid=0
  2013. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  2014. Suggestion:
  2015. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  2016.  
  2017. = AppArmor =
  2018. Time: Jan  5 11:54:58
  2019. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" pid=39721 comm="snap-device-hel" capability=21  capname="sys_admin"
  2020. Capability: sys_admin
  2021. Suggestions:
  2022. * adjust program to not require 'CAP_SYS_ADMIN' (see 'man 7 capabilities')
  2023. * add one of 'cifs-mount, fuse-support, hardware-observe, hostname-control, network-control, system-trace' to 'plugs'
  2024. * do nothing if program otherwise works properly
  2025.  
  2026. = AppArmor =
  2027. Time: Jan  5 11:54:58
  2028. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" pid=39722 comm="snap-confine" capability=7  capname="setuid"
  2029. Capability: setuid
  2030. Suggestions:
  2031. * adjust program to not require 'CAP_SETUID' (see 'man 7 capabilities')
  2032. * add one of 'firewall-control, network-control, network-observe, ppp' to 'plugs'
  2033. * do nothing if program otherwise works properly
  2034.  
  2035. = AppArmor =
  2036. Time: Jan  5 11:54:58
  2037. Log: apparmor="ALLOWED" operation="exec" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/usr/lib/snapd/snap-device-helper" pid=39722 comm="snap-confine" requested_mask="x" denied_mask="x" fsuid=0 ouid=0 target="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper"
  2038. File: /usr/lib/snapd/snap-device-helper (exec)
  2039. Suggestions:
  2040. * adjust snap to ship 'snap-device-helper'
  2041. * adjust program to use relative paths if the snap already ships 'snap-device-helper'
  2042.  
  2043. = AppArmor =
  2044. Time: Jan  5 11:54:58
  2045. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/bin/dash" pid=39722 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2046. File: /usr/bin/dash (read)
  2047. Suggestions:
  2048. * adjust snap to ship 'dash'
  2049. * adjust program to use relative paths if the snap already ships 'dash'
  2050.  
  2051. = AppArmor =
  2052. Time: Jan  5 11:54:58
  2053. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/ld-2.31.so" pid=39722 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2054. File: /usr/lib/x86_64-linux-gnu/ld-2.31.so (read)
  2055. Suggestion:
  2056. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  2057.  
  2058. = AppArmor =
  2059. Time: Jan  5 11:54:58
  2060. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/etc/ld.so.cache" pid=39722 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2061. File: /etc/ld.so.cache (read)
  2062. Suggestions:
  2063. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  2064. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  2065. * add 'system-files (see https://forum.snapcraft.io/t/the-system-files-interface for acceptance criteria)' to 'plugs'
  2066.  
  2067. = AppArmor =
  2068. Time: Jan  5 11:54:58
  2069. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39722 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2070. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (read)
  2071. Suggestion:
  2072. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  2073.  
  2074. = AppArmor =
  2075. Time: Jan  5 11:54:58
  2076. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39722 comm="snap-device-hel" requested_mask="rm" denied_mask="rm" fsuid=0 ouid=0
  2077. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (mmap)
  2078.  
  2079. = AppArmor =
  2080. Time: Jan  5 11:54:58
  2081. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/snapd/snap-device-helper" pid=39722 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2082. File: /usr/lib/snapd/snap-device-helper (read)
  2083. Suggestion:
  2084. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  2085.  
  2086. = AppArmor =
  2087. Time: Jan  5 11:54:58
  2088. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39722 comm="snap-device-hel" requested_mask="wc" denied_mask="wc" fsuid=0 ouid=0
  2089. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  2090. Suggestion:
  2091. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  2092.  
  2093. = AppArmor =
  2094. Time: Jan  5 11:54:58
  2095. Log: apparmor="ALLOWED" operation="truncate" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39722 comm="snap-device-hel" requested_mask="w" denied_mask="w" fsuid=0 ouid=0
  2096. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  2097. Suggestion:
  2098. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  2099.  
  2100. = AppArmor =
  2101. Time: Jan  5 11:54:58
  2102. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" pid=39722 comm="snap-device-hel" capability=21  capname="sys_admin"
  2103. Capability: sys_admin
  2104. Suggestions:
  2105. * adjust program to not require 'CAP_SYS_ADMIN' (see 'man 7 capabilities')
  2106. * add one of 'cifs-mount, fuse-support, hardware-observe, hostname-control, network-control, system-trace' to 'plugs'
  2107. * do nothing if program otherwise works properly
  2108.  
  2109. = AppArmor =
  2110. Time: Jan  5 11:54:58
  2111. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/sys/devices/pci0000:00/0000:00:02.0/drm/card0/uevent" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2112. File: /sys/devices/pci0000:00/0000:00:02.0/drm/card0/uevent (read)
  2113. Suggestions:
  2114. * adjust program to not access '/sys/devices/pci0000:00/0000:00:02.0/drm/card0/uevent'
  2115. * adjust program to not access '/sys/devices/pci[0-9]*:[0-9]*/[0-9]*:[0-9]*:[0-9]*.[0-9]*/drm/card[0-9]*/uevent'
  2116.  
  2117. = AppArmor =
  2118. Time: Jan  5 11:54:58
  2119. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" pid=39723 comm="snap-confine" capability=7  capname="setuid"
  2120. Capability: setuid
  2121. Suggestions:
  2122. * adjust program to not require 'CAP_SETUID' (see 'man 7 capabilities')
  2123. * add one of 'firewall-control, network-control, network-observe, ppp' to 'plugs'
  2124. * do nothing if program otherwise works properly
  2125.  
  2126. = AppArmor =
  2127. Time: Jan  5 11:54:58
  2128. Log: apparmor="ALLOWED" operation="exec" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/usr/lib/snapd/snap-device-helper" pid=39723 comm="snap-confine" requested_mask="x" denied_mask="x" fsuid=0 ouid=0 target="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper"
  2129. File: /usr/lib/snapd/snap-device-helper (exec)
  2130. Suggestions:
  2131. * adjust snap to ship 'snap-device-helper'
  2132. * adjust program to use relative paths if the snap already ships 'snap-device-helper'
  2133.  
  2134. = AppArmor =
  2135. Time: Jan  5 11:54:58
  2136. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/bin/dash" pid=39723 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2137. File: /usr/bin/dash (read)
  2138. Suggestions:
  2139. * adjust snap to ship 'dash'
  2140. * adjust program to use relative paths if the snap already ships 'dash'
  2141.  
  2142. = AppArmor =
  2143. Time: Jan  5 11:54:58
  2144. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/ld-2.31.so" pid=39723 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2145. File: /usr/lib/x86_64-linux-gnu/ld-2.31.so (read)
  2146. Suggestion:
  2147. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  2148.  
  2149. = AppArmor =
  2150. Time: Jan  5 11:54:58
  2151. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/etc/ld.so.cache" pid=39723 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2152. File: /etc/ld.so.cache (read)
  2153. Suggestions:
  2154. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  2155. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  2156. * add 'system-files (see https://forum.snapcraft.io/t/the-system-files-interface for acceptance criteria)' to 'plugs'
  2157.  
  2158. = AppArmor =
  2159. Time: Jan  5 11:54:58
  2160. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39723 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2161. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (read)
  2162. Suggestion:
  2163. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  2164.  
  2165. = AppArmor =
  2166. Time: Jan  5 11:54:58
  2167. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39723 comm="snap-device-hel" requested_mask="rm" denied_mask="rm" fsuid=0 ouid=0
  2168. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (mmap)
  2169.  
  2170. = AppArmor =
  2171. Time: Jan  5 11:54:58
  2172. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/snapd/snap-device-helper" pid=39723 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2173. File: /usr/lib/snapd/snap-device-helper (read)
  2174. Suggestion:
  2175. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  2176.  
  2177. = AppArmor =
  2178. Time: Jan  5 11:54:58
  2179. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39723 comm="snap-device-hel" requested_mask="wc" denied_mask="wc" fsuid=0 ouid=0
  2180. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  2181. Suggestion:
  2182. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  2183.  
  2184. = AppArmor =
  2185. Time: Jan  5 11:54:58
  2186. Log: apparmor="ALLOWED" operation="truncate" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39723 comm="snap-device-hel" requested_mask="w" denied_mask="w" fsuid=0 ouid=0
  2187. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  2188. Suggestion:
  2189. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  2190.  
  2191. = AppArmor =
  2192. Time: Jan  5 11:54:58
  2193. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" pid=39723 comm="snap-device-hel" capability=21  capname="sys_admin"
  2194. Capability: sys_admin
  2195. Suggestions:
  2196. * adjust program to not require 'CAP_SYS_ADMIN' (see 'man 7 capabilities')
  2197. * add one of 'cifs-mount, fuse-support, hardware-observe, hostname-control, network-control, system-trace' to 'plugs'
  2198. * do nothing if program otherwise works properly
  2199.  
  2200. = AppArmor =
  2201. Time: Jan  5 11:54:58
  2202. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/sys/devices/pci0000:00/0000:00:02.0/drm/card0/card0-DP-1/uevent" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2203. File: /sys/devices/pci0000:00/0000:00:02.0/drm/card0/card0-DP-1/uevent (read)
  2204. Suggestions:
  2205. * adjust program to not access '/sys/devices/pci0000:00/0000:00:02.0/drm/card0/card0-DP-1/uevent'
  2206. * adjust program to not access '/sys/devices/pci[0-9]*:[0-9]*/[0-9]*:[0-9]*:[0-9]*.[0-9]*/drm/card[0-9]*/card[0-9]*-DP-[0-9]*/uevent'
  2207.  
  2208. = AppArmor =
  2209. Time: Jan  5 11:54:58
  2210. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/sys/devices/pci0000:00/0000:00:02.0/drm/card0/card0-DP-2/uevent" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2211. File: /sys/devices/pci0000:00/0000:00:02.0/drm/card0/card0-DP-2/uevent (read)
  2212. Suggestions:
  2213. * adjust program to not access '/sys/devices/pci0000:00/0000:00:02.0/drm/card0/card0-DP-2/uevent'
  2214. * adjust program to not access '/sys/devices/pci[0-9]*:[0-9]*/[0-9]*:[0-9]*:[0-9]*.[0-9]*/drm/card[0-9]*/card[0-9]*-DP-[0-9]*/uevent'
  2215.  
  2216. = AppArmor =
  2217. Time: Jan  5 11:54:58
  2218. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/sys/devices/pci0000:00/0000:00:02.0/drm/card0/card0-DP-3/uevent" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2219. File: /sys/devices/pci0000:00/0000:00:02.0/drm/card0/card0-DP-3/uevent (read)
  2220. Suggestions:
  2221. * adjust program to not access '/sys/devices/pci0000:00/0000:00:02.0/drm/card0/card0-DP-3/uevent'
  2222. * adjust program to not access '/sys/devices/pci[0-9]*:[0-9]*/[0-9]*:[0-9]*:[0-9]*.[0-9]*/drm/card[0-9]*/card[0-9]*-DP-[0-9]*/uevent'
  2223.  
  2224. = AppArmor =
  2225. Time: Jan  5 11:54:58
  2226. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/sys/devices/pci0000:00/0000:00:02.0/drm/card0/card0-HDMI-A-1/uevent" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2227. File: /sys/devices/pci0000:00/0000:00:02.0/drm/card0/card0-HDMI-A-1/uevent (read)
  2228. Suggestions:
  2229. * adjust program to not access '/sys/devices/pci0000:00/0000:00:02.0/drm/card0/card0-HDMI-A-1/uevent'
  2230. * adjust program to not access '/sys/devices/pci[0-9]*:[0-9]*/[0-9]*:[0-9]*:[0-9]*.[0-9]*/drm/card[0-9]*/card[0-9]*-HDMI-A-[0-9]*/uevent'
  2231.  
  2232. = AppArmor =
  2233. Time: Jan  5 11:54:58
  2234. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/sys/devices/pci0000:00/0000:00:02.0/drm/card0/card0-HDMI-A-2/uevent" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2235. File: /sys/devices/pci0000:00/0000:00:02.0/drm/card0/card0-HDMI-A-2/uevent (read)
  2236. Suggestions:
  2237. * adjust program to not access '/sys/devices/pci0000:00/0000:00:02.0/drm/card0/card0-HDMI-A-2/uevent'
  2238. * adjust program to not access '/sys/devices/pci[0-9]*:[0-9]*/[0-9]*:[0-9]*:[0-9]*.[0-9]*/drm/card[0-9]*/card[0-9]*-HDMI-A-[0-9]*/uevent'
  2239.  
  2240. = AppArmor =
  2241. Time: Jan  5 11:54:58
  2242. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/sys/devices/pci0000:00/0000:00:02.0/drm/card0/card0-HDMI-A-3/uevent" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2243. File: /sys/devices/pci0000:00/0000:00:02.0/drm/card0/card0-HDMI-A-3/uevent (read)
  2244. Suggestions:
  2245. * adjust program to not access '/sys/devices/pci0000:00/0000:00:02.0/drm/card0/card0-HDMI-A-3/uevent'
  2246. * adjust program to not access '/sys/devices/pci[0-9]*:[0-9]*/[0-9]*:[0-9]*:[0-9]*.[0-9]*/drm/card[0-9]*/card[0-9]*-HDMI-A-[0-9]*/uevent'
  2247.  
  2248. = AppArmor =
  2249. Time: Jan  5 11:54:58
  2250. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/sys/devices/pci0000:00/0000:00:02.0/drm/card0/card0-LVDS-1/uevent" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2251. File: /sys/devices/pci0000:00/0000:00:02.0/drm/card0/card0-LVDS-1/uevent (read)
  2252. Suggestions:
  2253. * adjust program to not access '/sys/devices/pci0000:00/0000:00:02.0/drm/card0/card0-LVDS-1/uevent'
  2254. * adjust program to not access '/sys/devices/pci[0-9]*:[0-9]*/[0-9]*:[0-9]*:[0-9]*.[0-9]*/drm/card[0-9]*/card[0-9]*-LVDS-[0-9]*/uevent'
  2255.  
  2256. = AppArmor =
  2257. Time: Jan  5 11:54:58
  2258. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/sys/devices/pci0000:00/0000:00:02.0/drm/card0/card0-VGA-1/uevent" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2259. File: /sys/devices/pci0000:00/0000:00:02.0/drm/card0/card0-VGA-1/uevent (read)
  2260. Suggestions:
  2261. * adjust program to not access '/sys/devices/pci0000:00/0000:00:02.0/drm/card0/card0-VGA-1/uevent'
  2262. * adjust program to not access '/sys/devices/pci[0-9]*:[0-9]*/[0-9]*:[0-9]*:[0-9]*.[0-9]*/drm/card[0-9]*/card[0-9]*-VGA-[0-9]*/uevent'
  2263.  
  2264. = AppArmor =
  2265. Time: Jan  5 11:54:58
  2266. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/sys/devices/pci0000:00/0000:00:02.0/drm/renderD128/uevent" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2267. File: /sys/devices/pci0000:00/0000:00:02.0/drm/renderD128/uevent (read)
  2268. Suggestions:
  2269. * adjust program to not access '/sys/devices/pci0000:00/0000:00:02.0/drm/renderD128/uevent'
  2270. * adjust program to not access '/sys/devices/pci[0-9]*:[0-9]*/[0-9]*:[0-9]*:[0-9]*.[0-9]*/drm/renderD[0-9]*/uevent'
  2271.  
  2272. = AppArmor =
  2273. Time: Jan  5 11:54:58
  2274. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" pid=39724 comm="snap-confine" capability=7  capname="setuid"
  2275. Capability: setuid
  2276. Suggestions:
  2277. * adjust program to not require 'CAP_SETUID' (see 'man 7 capabilities')
  2278. * add one of 'firewall-control, network-control, network-observe, ppp' to 'plugs'
  2279. * do nothing if program otherwise works properly
  2280.  
  2281. = AppArmor =
  2282. Time: Jan  5 11:54:58
  2283. Log: apparmor="ALLOWED" operation="exec" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/usr/lib/snapd/snap-device-helper" pid=39724 comm="snap-confine" requested_mask="x" denied_mask="x" fsuid=0 ouid=0 target="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper"
  2284. File: /usr/lib/snapd/snap-device-helper (exec)
  2285. Suggestions:
  2286. * adjust snap to ship 'snap-device-helper'
  2287. * adjust program to use relative paths if the snap already ships 'snap-device-helper'
  2288.  
  2289. = AppArmor =
  2290. Time: Jan  5 11:54:58
  2291. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/bin/dash" pid=39724 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2292. File: /usr/bin/dash (read)
  2293. Suggestions:
  2294. * adjust snap to ship 'dash'
  2295. * adjust program to use relative paths if the snap already ships 'dash'
  2296.  
  2297. = AppArmor =
  2298. Time: Jan  5 11:54:58
  2299. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/ld-2.31.so" pid=39724 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2300. File: /usr/lib/x86_64-linux-gnu/ld-2.31.so (read)
  2301. Suggestion:
  2302. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  2303.  
  2304. = AppArmor =
  2305. Time: Jan  5 11:54:58
  2306. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/etc/ld.so.cache" pid=39724 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2307. File: /etc/ld.so.cache (read)
  2308. Suggestions:
  2309. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  2310. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  2311. * add 'system-files (see https://forum.snapcraft.io/t/the-system-files-interface for acceptance criteria)' to 'plugs'
  2312.  
  2313. = AppArmor =
  2314. Time: Jan  5 11:54:58
  2315. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39724 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2316. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (read)
  2317. Suggestion:
  2318. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  2319.  
  2320. = AppArmor =
  2321. Time: Jan  5 11:54:58
  2322. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39724 comm="snap-device-hel" requested_mask="rm" denied_mask="rm" fsuid=0 ouid=0
  2323. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (mmap)
  2324.  
  2325. = AppArmor =
  2326. Time: Jan  5 11:54:58
  2327. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/snapd/snap-device-helper" pid=39724 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2328. File: /usr/lib/snapd/snap-device-helper (read)
  2329. Suggestion:
  2330. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  2331.  
  2332. = AppArmor =
  2333. Time: Jan  5 11:54:58
  2334. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39724 comm="snap-device-hel" requested_mask="wc" denied_mask="wc" fsuid=0 ouid=0
  2335. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  2336. Suggestion:
  2337. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  2338.  
  2339. = AppArmor =
  2340. Time: Jan  5 11:54:58
  2341. Log: apparmor="ALLOWED" operation="truncate" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39724 comm="snap-device-hel" requested_mask="w" denied_mask="w" fsuid=0 ouid=0
  2342. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  2343. Suggestion:
  2344. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  2345.  
  2346. = AppArmor =
  2347. Time: Jan  5 11:54:58
  2348. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" pid=39724 comm="snap-device-hel" capability=21  capname="sys_admin"
  2349. Capability: sys_admin
  2350. Suggestions:
  2351. * adjust program to not require 'CAP_SYS_ADMIN' (see 'man 7 capabilities')
  2352. * add one of 'cifs-mount, fuse-support, hardware-observe, hostname-control, network-control, system-trace' to 'plugs'
  2353. * do nothing if program otherwise works properly
  2354.  
  2355. = AppArmor =
  2356. Time: Jan  5 11:54:58
  2357. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/sys/devices/pci0000:00/0000:00:1a.0/usb1/1-1/1-1.6/1-1.6:1.0/video4linux/video0/uevent" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2358. File: /sys/devices/pci0000:00/0000:00:1a.0/usb1/1-1/1-1.6/1-1.6:1.0/video4linux/video0/uevent (read)
  2359. Suggestions:
  2360. * adjust program to not access '/sys/devices/pci0000:00/0000:00:1a.0/usb1/1-1/1-1.6/1-1.6:1.0/video4linux/video0/uevent'
  2361. * adjust program to not access '/sys/devices/pci[0-9]*:[0-9]*/[0-9]*:[0-9]*:[0-9]*a.[0-9]*/usb[0-9]*/[0-9]*-[0-9]*/[0-9]*-[0-9]*.[0-9]*/[0-9]*-[0-9]*.[0-9]*:[0-9]*.[0-9]*/video[0-9]*linux/video[0-9]*/uevent'
  2362.  
  2363. = AppArmor =
  2364. Time: Jan  5 11:54:58
  2365. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" pid=39725 comm="snap-confine" capability=7  capname="setuid"
  2366. Capability: setuid
  2367. Suggestions:
  2368. * adjust program to not require 'CAP_SETUID' (see 'man 7 capabilities')
  2369. * add one of 'firewall-control, network-control, network-observe, ppp' to 'plugs'
  2370. * do nothing if program otherwise works properly
  2371.  
  2372. = AppArmor =
  2373. Time: Jan  5 11:54:58
  2374. Log: apparmor="ALLOWED" operation="exec" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/usr/lib/snapd/snap-device-helper" pid=39725 comm="snap-confine" requested_mask="x" denied_mask="x" fsuid=0 ouid=0 target="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper"
  2375. File: /usr/lib/snapd/snap-device-helper (exec)
  2376. Suggestions:
  2377. * adjust snap to ship 'snap-device-helper'
  2378. * adjust program to use relative paths if the snap already ships 'snap-device-helper'
  2379.  
  2380. = AppArmor =
  2381. Time: Jan  5 11:54:58
  2382. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/bin/dash" pid=39725 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2383. File: /usr/bin/dash (read)
  2384. Suggestions:
  2385. * adjust snap to ship 'dash'
  2386. * adjust program to use relative paths if the snap already ships 'dash'
  2387.  
  2388. = AppArmor =
  2389. Time: Jan  5 11:54:58
  2390. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/ld-2.31.so" pid=39725 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2391. File: /usr/lib/x86_64-linux-gnu/ld-2.31.so (read)
  2392. Suggestion:
  2393. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  2394.  
  2395. = AppArmor =
  2396. Time: Jan  5 11:54:58
  2397. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/etc/ld.so.cache" pid=39725 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2398. File: /etc/ld.so.cache (read)
  2399. Suggestions:
  2400. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  2401. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  2402. * add 'system-files (see https://forum.snapcraft.io/t/the-system-files-interface for acceptance criteria)' to 'plugs'
  2403.  
  2404. = AppArmor =
  2405. Time: Jan  5 11:54:58
  2406. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39725 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2407. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (read)
  2408. Suggestion:
  2409. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  2410.  
  2411. = AppArmor =
  2412. Time: Jan  5 11:54:58
  2413. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39725 comm="snap-device-hel" requested_mask="rm" denied_mask="rm" fsuid=0 ouid=0
  2414. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (mmap)
  2415.  
  2416. = AppArmor =
  2417. Time: Jan  5 11:54:58
  2418. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/snapd/snap-device-helper" pid=39725 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2419. File: /usr/lib/snapd/snap-device-helper (read)
  2420. Suggestion:
  2421. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  2422.  
  2423. = AppArmor =
  2424. Time: Jan  5 11:54:58
  2425. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39725 comm="snap-device-hel" requested_mask="wc" denied_mask="wc" fsuid=0 ouid=0
  2426. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  2427. Suggestion:
  2428. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  2429.  
  2430. = AppArmor =
  2431. Time: Jan  5 11:54:58
  2432. Log: apparmor="ALLOWED" operation="truncate" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39725 comm="snap-device-hel" requested_mask="w" denied_mask="w" fsuid=0 ouid=0
  2433. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  2434. Suggestion:
  2435. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  2436.  
  2437. = AppArmor =
  2438. Time: Jan  5 11:54:58
  2439. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" pid=39725 comm="snap-device-hel" capability=21  capname="sys_admin"
  2440. Capability: sys_admin
  2441. Suggestions:
  2442. * adjust program to not require 'CAP_SYS_ADMIN' (see 'man 7 capabilities')
  2443. * add one of 'cifs-mount, fuse-support, hardware-observe, hostname-control, network-control, system-trace' to 'plugs'
  2444. * do nothing if program otherwise works properly
  2445.  
  2446. = AppArmor =
  2447. Time: Jan  5 11:54:58
  2448. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/sys/devices/pci0000:00/0000:00:1a.0/usb1/1-1/1-1.6/1-1.6:1.0/video4linux/video1/uevent" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2449. File: /sys/devices/pci0000:00/0000:00:1a.0/usb1/1-1/1-1.6/1-1.6:1.0/video4linux/video1/uevent (read)
  2450. Suggestions:
  2451. * adjust program to not access '/sys/devices/pci0000:00/0000:00:1a.0/usb1/1-1/1-1.6/1-1.6:1.0/video4linux/video1/uevent'
  2452. * adjust program to not access '/sys/devices/pci[0-9]*:[0-9]*/[0-9]*:[0-9]*:[0-9]*a.[0-9]*/usb[0-9]*/[0-9]*-[0-9]*/[0-9]*-[0-9]*.[0-9]*/[0-9]*-[0-9]*.[0-9]*:[0-9]*.[0-9]*/video[0-9]*linux/video[0-9]*/uevent'
  2453.  
  2454. = AppArmor =
  2455. Time: Jan  5 11:54:58
  2456. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" pid=39726 comm="snap-confine" capability=7  capname="setuid"
  2457. Capability: setuid
  2458. Suggestions:
  2459. * adjust program to not require 'CAP_SETUID' (see 'man 7 capabilities')
  2460. * add one of 'firewall-control, network-control, network-observe, ppp' to 'plugs'
  2461. * do nothing if program otherwise works properly
  2462.  
  2463. = AppArmor =
  2464. Time: Jan  5 11:54:58
  2465. Log: apparmor="ALLOWED" operation="exec" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/usr/lib/snapd/snap-device-helper" pid=39726 comm="snap-confine" requested_mask="x" denied_mask="x" fsuid=0 ouid=0 target="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper"
  2466. File: /usr/lib/snapd/snap-device-helper (exec)
  2467. Suggestions:
  2468. * adjust snap to ship 'snap-device-helper'
  2469. * adjust program to use relative paths if the snap already ships 'snap-device-helper'
  2470.  
  2471. = AppArmor =
  2472. Time: Jan  5 11:54:58
  2473. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/bin/dash" pid=39726 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2474. File: /usr/bin/dash (read)
  2475. Suggestions:
  2476. * adjust snap to ship 'dash'
  2477. * adjust program to use relative paths if the snap already ships 'dash'
  2478.  
  2479. = AppArmor =
  2480. Time: Jan  5 11:54:58
  2481. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/ld-2.31.so" pid=39726 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2482. File: /usr/lib/x86_64-linux-gnu/ld-2.31.so (read)
  2483. Suggestion:
  2484. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  2485.  
  2486. = AppArmor =
  2487. Time: Jan  5 11:54:58
  2488. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/etc/ld.so.cache" pid=39726 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2489. File: /etc/ld.so.cache (read)
  2490. Suggestions:
  2491. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  2492. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  2493. * add 'system-files (see https://forum.snapcraft.io/t/the-system-files-interface for acceptance criteria)' to 'plugs'
  2494.  
  2495. = AppArmor =
  2496. Time: Jan  5 11:54:58
  2497. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39726 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2498. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (read)
  2499. Suggestion:
  2500. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  2501.  
  2502. = AppArmor =
  2503. Time: Jan  5 11:54:58
  2504. Log: apparmor="ALLOWED" operation="file_mmap" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/x86_64-linux-gnu/libc-2.31.so" pid=39726 comm="snap-device-hel" requested_mask="rm" denied_mask="rm" fsuid=0 ouid=0
  2505. File: /usr/lib/x86_64-linux-gnu/libc-2.31.so (mmap)
  2506.  
  2507. = AppArmor =
  2508. Time: Jan  5 11:54:58
  2509. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/usr/lib/snapd/snap-device-helper" pid=39726 comm="snap-device-hel" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2510. File: /usr/lib/snapd/snap-device-helper (read)
  2511. Suggestion:
  2512. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  2513.  
  2514. = AppArmor =
  2515. Time: Jan  5 11:54:58
  2516. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39726 comm="snap-device-hel" requested_mask="wc" denied_mask="wc" fsuid=0 ouid=0
  2517. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  2518. Suggestion:
  2519. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  2520.  
  2521. = AppArmor =
  2522. Time: Jan  5 11:54:58
  2523. Log: apparmor="ALLOWED" operation="truncate" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" name="/sys/fs/cgroup/devices/snap.jami.jami/devices.allow" pid=39726 comm="snap-device-hel" requested_mask="w" denied_mask="w" fsuid=0 ouid=0
  2524. File: /sys/fs/cgroup/devices/snap.jami.jami/devices.allow (write)
  2525. Suggestion:
  2526. * adjust program to not access '/sys/fs/cgroup/devices/snap.jami.jami/devices.allow'
  2527.  
  2528. = AppArmor =
  2529. Time: Jan  5 11:54:58
  2530. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-/usr/lib/snapd/snap-device-helper" pid=39726 comm="snap-device-hel" capability=21  capname="sys_admin"
  2531. Capability: sys_admin
  2532. Suggestions:
  2533. * adjust program to not require 'CAP_SYS_ADMIN' (see 'man 7 capabilities')
  2534. * add one of 'cifs-mount, fuse-support, hardware-observe, hostname-control, network-control, system-trace' to 'plugs'
  2535. * do nothing if program otherwise works properly
  2536.  
  2537. = AppArmor =
  2538. Time: Jan  5 11:54:58
  2539. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/usr/lib/os-release" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2540. File: /usr/lib/os-release (read)
  2541. Suggestion:
  2542. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  2543.  
  2544. = AppArmor =
  2545. Time: Jan  5 11:54:58
  2546. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/run/snapd/ns/jami.mnt" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2547. File: /run/snapd/ns/jami.mnt (read)
  2548. Suggestions:
  2549. * adjust program to use $SNAP_DATA
  2550. * adjust program to use /run/shm/snap.$SNAP_NAME.*
  2551. * adjust program to use /run/snap.$SNAP_NAME.*
  2552. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  2553.  
  2554. = AppArmor =
  2555. Time: Jan  5 11:54:58
  2556. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/proc/39687/mountinfo" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2557. File: /proc/39687/mountinfo (read)
  2558. Suggestions:
  2559. * adjust program to not access '@{PROC}/@{pid}/mountinfo'
  2560. * add 'mount-observe' to 'plugs'
  2561.  
  2562. = AppArmor =
  2563. Time: Jan  5 11:54:58
  2564. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/proc/39727/attr/current" pid=39727 comm="snap-confine" requested_mask="w" denied_mask="w" fsuid=0 ouid=0
  2565. File: /proc/39727/attr/current (write)
  2566. Suggestion:
  2567. * adjust program to not access '@{PROC}/@{pid}/attr/current'
  2568.  
  2569. = AppArmor =
  2570. Time: Jan  5 11:54:58
  2571. Log: apparmor="ALLOWED" operation="change_hat" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="mount-namespace-capture-helper" pid=39727 comm="snap-confine" target="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine//null-mount-namespace-capture-helper"
  2572.  
  2573. = AppArmor =
  2574. Time: Jan  5 11:54:58
  2575. Log: apparmor="ALLOWED" operation="capable" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" pid=39728 comm="snap-confine" capability=21  capname="sys_admin"
  2576. Capability: sys_admin
  2577. Suggestions:
  2578. * adjust program to not require 'CAP_SYS_ADMIN' (see 'man 7 capabilities')
  2579. * add one of 'cifs-mount, fuse-support, hardware-observe, hostname-control, network-control, system-trace' to 'plugs'
  2580. * do nothing if program otherwise works properly
  2581.  
  2582. = AppArmor =
  2583. Time: Jan  5 11:54:58
  2584. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/proc/39728/mountinfo" pid=39728 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2585. File: /proc/39728/mountinfo (read)
  2586. Suggestions:
  2587. * adjust program to not access '@{PROC}/@{pid}/mountinfo'
  2588. * add 'mount-observe' to 'plugs'
  2589.  
  2590. = AppArmor =
  2591. Time: Jan  5 11:54:58
  2592. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/run/snapd/ns/snap.jami.info" pid=39728 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2593. File: /run/snapd/ns/snap.jami.info (read)
  2594. Suggestions:
  2595. * adjust program to use $SNAP_DATA
  2596. * adjust program to use /run/shm/snap.$SNAP_NAME.*
  2597. * adjust program to use /run/snap.$SNAP_NAME.*
  2598. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  2599.  
  2600. = AppArmor =
  2601. Time: Jan  5 11:54:58
  2602. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/run/udev/tags/" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2603. File: /run/udev/tags/ (read)
  2604. Suggestions:
  2605. * adjust program to use $SNAP_DATA
  2606. * adjust program to use /run/shm/snap.$SNAP_NAME.*
  2607. * adjust program to use /run/snap.$SNAP_NAME.*
  2608. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  2609.  
  2610. = AppArmor =
  2611. Time: Jan  5 11:54:58
  2612. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/run/udev/tags/snap_snap-store_ubuntu-software/" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2613. File: /run/udev/tags/snap_snap-store_ubuntu-software/ (read)
  2614. Suggestions:
  2615. * adjust program to use $SNAP_DATA
  2616. * adjust program to use /run/shm/snap.$SNAP_NAME.*
  2617. * adjust program to use /run/snap.$SNAP_NAME.*
  2618. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  2619.  
  2620. = AppArmor =
  2621. Time: Jan  5 11:54:58
  2622. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/run/udev/tags/snap_snap-store_ubuntu-software-local-file/" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2623. File: /run/udev/tags/snap_snap-store_ubuntu-software-local-file/ (read)
  2624. Suggestions:
  2625. * adjust program to use $SNAP_DATA
  2626. * adjust program to use /run/shm/snap.$SNAP_NAME.*
  2627. * adjust program to use /run/snap.$SNAP_NAME.*
  2628. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  2629.  
  2630. = AppArmor =
  2631. Time: Jan  5 11:54:58
  2632. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/run/udev/tags/snap_krdc_krdc/" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2633. File: /run/udev/tags/snap_krdc_krdc/ (read)
  2634. Suggestions:
  2635. * adjust program to use $SNAP_DATA
  2636. * adjust program to use /run/shm/snap.$SNAP_NAME.*
  2637. * adjust program to use /run/snap.$SNAP_NAME.*
  2638. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  2639.  
  2640. = AppArmor =
  2641. Time: Jan  5 11:54:58
  2642. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/run/udev/tags/snap_snap-store_snap-store/" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2643. File: /run/udev/tags/snap_snap-store_snap-store/ (read)
  2644. Suggestions:
  2645. * adjust program to use $SNAP_DATA
  2646. * adjust program to use /run/shm/snap.$SNAP_NAME.*
  2647. * adjust program to use /run/snap.$SNAP_NAME.*
  2648. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  2649.  
  2650. = AppArmor =
  2651. Time: Jan  5 11:54:58
  2652. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/run/udev/tags/snap_jami_jami/" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2653. File: /run/udev/tags/snap_jami_jami/ (read)
  2654. Suggestions:
  2655. * adjust program to use $SNAP_DATA
  2656. * adjust program to use /run/shm/snap.$SNAP_NAME.*
  2657. * adjust program to use /run/snap.$SNAP_NAME.*
  2658. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  2659.  
  2660. = AppArmor =
  2661. Time: Jan  5 11:54:58
  2662. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/run/udev/tags/snap_telegram-desktop_telegram-desktop/" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2663. File: /run/udev/tags/snap_telegram-desktop_telegram-desktop/ (read)
  2664. Suggestions:
  2665. * adjust program to use $SNAP_DATA
  2666. * adjust program to use /run/shm/snap.$SNAP_NAME.*
  2667. * adjust program to use /run/snap.$SNAP_NAME.*
  2668. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  2669.  
  2670. = AppArmor =
  2671. Time: Jan  5 11:54:58
  2672. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/run/udev/tags/snap_discord_discord/" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
  2673. File: /run/udev/tags/snap_discord_discord/ (read)
  2674. Suggestions:
  2675. * adjust program to use $SNAP_DATA
  2676. * adjust program to use /run/shm/snap.$SNAP_NAME.*
  2677. * adjust program to use /run/snap.$SNAP_NAME.*
  2678. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  2679.  
  2680. = AppArmor =
  2681. Time: Jan  5 11:54:58
  2682. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/proc/39729/attr/exec" pid=39729 comm="snap-confine" requested_mask="w" denied_mask="w" fsuid=0 ouid=0
  2683. File: /proc/39729/attr/exec (write)
  2684. Suggestion:
  2685. * adjust program to not access '@{PROC}/@{pid}/attr/exec'
  2686.  
  2687. = AppArmor =
  2688. Time: Jan  5 11:54:58
  2689. Log: apparmor="ALLOWED" operation="change_onexec" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="snap-update-ns.jami" pid=39729 comm="snap-confine" target="snap-update-ns.jami"
  2690.  
  2691. = AppArmor =
  2692. Time: Jan  5 11:54:58
  2693. Log: apparmor="ALLOWED" operation="exec" info="Failed name lookup - disconnected path" error=-13 profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/dev/fd/5" pid=39729 comm="snap-confine" target="snap-update-ns.jami"
  2694. File: /dev/fd/5 (exec)
  2695. Suggestions:
  2696. * adjust snap to ship '5'
  2697. * adjust program to use relative paths if the snap already ships '5'
  2698.  
  2699. = AppArmor =
  2700. Time: Jan  5 11:54:58
  2701. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/sys/fs/cgroup/freezer/snap.jami/cgroup.procs" pid=39687 comm="snap-confine" requested_mask="w" denied_mask="w" fsuid=0 ouid=0
  2702. File: /sys/fs/cgroup/freezer/snap.jami/cgroup.procs (write)
  2703. Suggestion:
  2704. * adjust program to not access '/sys/fs/cgroup/freezer/snap.jami/cgroup.procs'
  2705.  
  2706. = AppArmor =
  2707. Time: Jan  5 11:54:58
  2708. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  2709. File: / (read)
  2710. Suggestions:
  2711. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  2712. * add 'network-control' to 'plugs'
  2713.  
  2714. = AppArmor =
  2715. Time: Jan  5 11:54:58
  2716. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/home/" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  2717. File: /home/ (read)
  2718. Suggestion:
  2719. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  2720.  
  2721. = AppArmor =
  2722. Time: Jan  5 11:54:58
  2723. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/home/artem/" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=1000 ouid=1000
  2724. File: /home/artem/ (read)
  2725. Suggestions:
  2726. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  2727. * add 'home' to 'plugs'
  2728.  
  2729. = AppArmor =
  2730. Time: Jan  5 11:54:58
  2731. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/home/artem/snap/" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=1000 ouid=1000
  2732. File: /home/artem/snap/ (read)
  2733. Suggestions:
  2734. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  2735. * add 'home' to 'plugs'
  2736.  
  2737. = AppArmor =
  2738. Time: Jan  5 11:54:58
  2739. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/home/artem/snap/jami/" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=1000 ouid=1000
  2740. File: /home/artem/snap/jami/ (read)
  2741. Suggestion:
  2742. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  2743.  
  2744. = AppArmor =
  2745. Time: Jan  5 11:54:58
  2746. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/home/artem/snap/jami/112/" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=1000 ouid=1000
  2747. File: /home/artem/snap/jami/112/ (read)
  2748. Suggestion:
  2749. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  2750.  
  2751. = AppArmor =
  2752. Time: Jan  5 11:54:58
  2753. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/proc/39687/attr/exec" pid=39687 comm="snap-confine" requested_mask="w" denied_mask="w" fsuid=1000 ouid=0
  2754. File: /proc/39687/attr/exec (write)
  2755. Suggestion:
  2756. * adjust program to not access '@{PROC}/@{pid}/attr/exec'
  2757.  
  2758. = AppArmor =
  2759. Time: Jan  5 11:54:58
  2760. Log: apparmor="ALLOWED" operation="change_onexec" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="snap.jami.jami" pid=39687 comm="snap-confine" target="snap.jami.jami"
  2761.  
  2762. = AppArmor =
  2763. Time: Jan  5 11:54:58
  2764. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/var/lib/snapd/seccomp/bpf/snap.jami.jami.bin" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  2765. File: /var/lib/snapd/seccomp/bpf/snap.jami.jami.bin (read)
  2766. Suggestions:
  2767. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  2768. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  2769.  
  2770. = AppArmor =
  2771. Time: Jan  5 11:54:58
  2772. Log: apparmor="ALLOWED" operation="open" profile="/usr/bin/snap//null-/snap/snapd/10707/usr/bin/snap//null-/snap/snapd/10707/usr/lib/snapd/snap-confine" name="/var/lib/snapd/seccomp/bpf/global.bin" pid=39687 comm="snap-confine" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  2773. File: /var/lib/snapd/seccomp/bpf/global.bin (read)
  2774. Suggestions:
  2775. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  2776. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  2777.  
  2778. = Seccomp =
  2779. Time: Jan  5 11:54:59
  2780. Log: auid=1000 uid=1000 gid=1000 ses=3 pid=39687 comm="jami-gnome" exe="/snap/jami/112/usr/bin/jami-gnome" sig=0 arch=c000003e 203(sched_setaffinity) compat=0 ip=0x7fa57ebcdc7f code=0x50000
  2781. Syscall: sched_setaffinity
  2782. Suggestion:
  2783. * add 'process-control' to 'plugs'
  2784.  
  2785. = AppArmor =
  2786. Time: Jan  5 11:54:59
  2787. Log: apparmor="DENIED" operation="open" profile="snap.jami.jami" name="/etc/fstab" pid=39687 comm="jami-gnome" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  2788. File: /etc/fstab (read)
  2789. Suggestions:
  2790. * adjust program to read necessary files from $SNAP, $SNAP_DATA, $SNAP_COMMON, $SNAP_USER_DATA or $SNAP_USER_COMMON
  2791. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  2792. * add 'mount-observe' to 'plugs'
  2793.  
  2794. = AppArmor =
  2795. Time: Jan  5 11:54:59
  2796. Log: apparmor="DENIED" operation="open" profile="snap.jami.jami" name="/run/mount/utab" pid=39687 comm="jami-gnome" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  2797. File: /run/mount/utab (read)
  2798. Suggestions:
  2799. * adjust program to use $SNAP_DATA
  2800. * adjust program to use /run/shm/snap.$SNAP_NAME.*
  2801. * adjust program to use /run/snap.$SNAP_NAME.*
  2802. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  2803.  
  2804. = AppArmor =
  2805. Time: Jan  5 11:55:00
  2806. Log: apparmor="DENIED" operation="dbus_method_call"  bus="system" path="/org/freedesktop/NetworkManager" interface="org.freedesktop.DBus.Properties" member="GetAll" mask="send" name=":1.12" pid=39849 label="snap.jami.jami" peer_pid=559 peer_label="unconfined"
  2807. DBus access
  2808. Suggestion:
  2809. * try adding one of 'network-manager, network-manager-observe' to 'plugs'
  2810.  
  2811. = AppArmor =
  2812. Time: Jan  5 11:55:00
  2813. Log: apparmor="DENIED" operation="open" profile="snap.jami.jami" name="/run/mount/utab" pid=39687 comm="jami-gnome" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  2814. File: /run/mount/utab (read)
  2815. Suggestions:
  2816. * adjust program to use $SNAP_DATA
  2817. * adjust program to use /run/shm/snap.$SNAP_NAME.*
  2818. * adjust program to use /run/snap.$SNAP_NAME.*
  2819. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  2820.  
  2821. = AppArmor =
  2822. Time: Jan  5 11:55:00
  2823. Log: apparmor="DENIED" operation="dbus_signal"  bus="session" path="/StatusNotifierWatcher" interface="org.kde.StatusNotifierWatcher" member="StatusNotifierItemRegistered" name=":1.43" mask="receive" pid=2315 label="snap.telegram-desktop.telegram-desktop" peer_pid=2133 peer_label="unconfined"
  2824. DBus access
  2825.  
  2826. = AppArmor =
  2827. Time: Jan  5 11:55:00
  2828. Log: apparmor="DENIED" operation="dbus_signal"  bus="session" path="/StatusNotifierWatcher" interface="org.freedesktop.DBus.Properties" member="PropertiesChanged" name=":1.43" mask="receive" pid=2315 label="snap.telegram-desktop.telegram-desktop" peer_pid=2133 peer_label="unconfined"
  2829. DBus access
  2830.  
  2831. = AppArmor =
  2832. Time: Jan  5 11:55:00
  2833. Log: apparmor="DENIED" operation="open" profile="snap.jami.jami" name="/run/mount/utab" pid=39687 comm="jami-gnome" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0
  2834. File: /run/mount/utab (read)
  2835. Suggestions:
  2836. * adjust program to use $SNAP_DATA
  2837. * adjust program to use /run/shm/snap.$SNAP_NAME.*
  2838. * adjust program to use /run/snap.$SNAP_NAME.*
  2839. * adjust snap to use snap layouts (https://forum.snapcraft.io/t/snap-layouts/7207)
  2840.  
  2841. = AppArmor =
  2842. Time: Jan  5 11:55:00
  2843. Log: apparmor="DENIED" operation="dbus_method_call"  bus="system" path="/org/freedesktop/hostname1" interface="org.freedesktop.DBus.Properties" member="GetAll" mask="send" name=":1.145" pid=39687 label="snap.jami.jami" peer_pid=39856 peer_label="unconfined"
  2844. DBus access
  2845. Suggestion:
  2846. * try adding 'hostname-control' to 'plugs'
  2847.  
  2848. = AppArmor =
  2849. Time: Jan  5 11:55:00
  2850. Log: apparmor="DENIED" operation="dbus_method_call"  bus="system" path="/org/freedesktop/UPower/devices/DisplayDevice" interface="org.freedesktop.DBus.Properties" member="GetAll" mask="send" name=":1.43" pid=39848 label="snap.jami.jami" peer_pid=1331 peer_label="unconfined"
  2851. DBus access
  2852. Suggestion:
  2853. * try adding 'upower-observe' to 'plugs'
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement