]> git.lizzy.rs Git - torbrowser-launcher.git/blob - apparmor/torbrowser.start-tor-browser
AppArmor does not seem to import profiles with paths that contains @{HOME}
[torbrowser-launcher.git] / apparmor / torbrowser.start-tor-browser
1 #include <tunables/global>
2
3 /home/*/.torbrowser/tbb/{i686,x86_64}/tor-browser_*/start-tor-browser {
4   #include <abstractions/base>
5   #include <abstractions/bash>
6
7   capability sys_ptrace,
8
9
10   /bin/cat rix,
11   /bin/dash ix,
12   /bin/grep rix,
13   /bin/ps rix,
14   /bin/sed rix,
15   /dev/pts/[0-9]* rw,
16   /dev/tty rw,
17   /etc/magic r,
18   owner @{HOME}/.torbrowser/tbb/{i686,x86_64}/tor-browser_*/Browser/firefox Px,
19   owner @{HOME}/.torbrowser/tbb/{i686,x86_64}/tor-browser_*/Tor/tor r,
20   owner @{HOME}/.torbrowser/tbb/{i686,x86_64}/tor-browser_*/start-tor-browser r,
21   @{PROC}/ r,
22   @{PROC}/[0-9]*/status r,
23   @{PROC}/[0-9]*/stat r,
24   @{PROC}/[0-9]*/cmdline r,
25   @{PROC}/meminfo r,
26   @{PROC}/sys/kernel/pid_max r,
27   @{PROC}/tty/drivers r,
28   @{PROC}/uptime r,
29   /{,var/}run/utmp r,
30   /dev/ptmx rw,
31   /usr/bin/dirname rix,
32   /usr/bin/expr rix,
33   /usr/bin/file rix,
34   /usr/bin/getconf rix,
35   /usr/bin/id rix,
36   /usr/bin/ldd rix,
37   /usr/lib{,32,64}/** mr,
38   /usr/share/file/magic.mgc r,
39   /usr/share/file/magic/ r,
40
41 }