AppArmor userlevel parser utility

Edit Package apparmor

The AppArmor Parser is a userlevel program that is used to load in
program profiles to the AppArmor Security kernel module.

This package is part of a suite of tools that used to be named
SubDomain.

Refresh
Refresh
Source Files
Filename Size Changed
apache-extra-profile-include-if-exists.diff 0000001102 1.08 KB
apparmor-3.0.4.tar.gz 0007796852 7.44 MB
apparmor-3.0.4.tar.gz.asc 0000000870 870 Bytes
apparmor-enable-profile-cache.diff 0000001001 1001 Bytes
apparmor-lessopen-nfs-workaround.diff 0000000730 730 Bytes
apparmor-lessopen-profile.patch 0000001406 1.37 KB
apparmor-rpmlintrc 0000000387 387 Bytes
apparmor-samba-include-permissions-for-shares.diff 0000001316 1.29 KB
apparmor.changes 0000085470 83.5 KB
apparmor.keyring 0000003993 3.9 KB
apparmor.spec 0000024497 23.9 KB
baselibs.conf 0000000186 186 Bytes
libapparmor.spec 0000003671 3.58 KB
ruby-2_0-mkmf-destdir.patch 0000000985 985 Bytes
samba-new-dcerpcd.patch 0000006165 6.02 KB
samba_deny_net_admin.patch 0000000482 482 Bytes
update-samba-bgqd.diff 0000000641 641 Bytes
update-trans.sh 0000002268 2.21 KB
update-usr-sbin-smbd.diff 0000000531 531 Bytes
zgrep-profile-mr870.diff 0000002077 2.03 KB
Revision 6 (latest revision is 7)
Gustavo Yokoyama Ribeiro's avatar Gustavo Yokoyama Ribeiro (gyribeiro) committed (revision 6)
- update zgrep-profile-mr870.diff to allow executing 'expr' (boo#1198531)

- Add samba-new-dcerpcd.patch, samba-4.16 has a new dcerpcd daemon
  which now will spawn new additional services on demand. We need to
  modify the existing smbd/winbind profiles and additionally add a
  new set of profiles to cater for the new functionality;
  (bnc#1198309);
  

- Add samba_deny_net_admin.patch to add new rule to deny
  noisy setsockopt calls from systemd; (bnc#1196850).

- add profile for zgrep and xzgrep to prevent CVE-2022-1271
  (zgrep-profile-mr870.diff)

- ensure precompiled cache files are newer than (text) profiles
- reload profiles in %posttrans instead of %post to ensure both
  -profiles and -abstractons package are updated before the cache
  in /var/cache/apparmor/ gets built (boo#1195463 #c20)

- Add update-samba-bgqd.diff to add new rule to fix 'DENIED' open on
  /proc/{pid}/fd for samba-bgqd (bnc#1196850).
- Add update-usr-sbin-smbd.diff to add new rule to allow reading of
  openssl.cnf (bnc#1195463).
Comments 0
openSUSE Build Service is sponsored by