On Wed, Jan 04, 2012 at 10:43:31AM -0600, Jamie Strandboge wrote:
> The private-files abstraction should explicitly deny writes to this
> directory. Since nss also stores certificates, etc in this directory,
> should use something like:
>   audit deny @{HOME}/.pki/nssdb/*.so{,.[0-9]*} wl,
> 
> Attached is a patch to achieve this (and fixes 2 spelling errors).

Acked-by: Kees Cook <[email protected]>

-- 
Kees Cook

-- 
AppArmor mailing list
[email protected]
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/apparmor

Reply via email to