On Wed, Jan 04, 2012 at 10:43:31AM -0600, Jamie Strandboge wrote:
> The private-files abstraction should explicitly deny writes to this
> directory. Since nss also stores certificates, etc in this directory,
> should use something like:
> audit deny @{HOME}/.pki/nssdb/*.so{,.[0-9]*} wl,
>
> Attached is a patch to achieve this (and fixes 2 spelling errors).
Acked-by: Kees Cook <[email protected]>
--
Kees Cook
--
AppArmor mailing list
[email protected]
Modify settings or unsubscribe at:
https://lists.ubuntu.com/mailman/listinfo/apparmor