The proposal to merge lp:~sdeziel/apparmor-profiles/unbound-profile into
lp:apparmor-profiles has been updated.
Status: Needs review = Merged
For more details, see:
https://code.launchpad.net/~sdeziel/apparmor-profiles/unbound-profile/+merge/86430
--
https://code.launchpad.net/~sdeziel
Hello,
Am Mittwoch, 30. November 2011 schrieb Simon Déziel:
=== modified file 'ubuntu/12.04/usr.sbin.unbound'
...
+ /etc/passwd rm,
+ /etc/group rm,
Minor nitpicking: Can someone change this to mr instead of rm,
please? Then it would follow the usual order all other profiles have,
and
Simon Déziel has proposed merging lp:~sdeziel/apparmor-profiles/unbound-profile
into lp:apparmor-profiles.
Requested reviews:
Jamie Strandboge (jdstrand)
Felix Geyer (debfx)
Related bugs:
Bug #897392 in AppArmor Profiles: [wishlist] add unbound profile
I dropped the 2 capabilities that were useless (dac_override and chown). The
new merge proposal is also protecting the control and server key while still
allowing automatic key update using the auto-trust-anchor-file mechanism
(RFC5011). The paths used to express the rules are now covering a