[apparmor] aa-unconfined, netstat(8) profile: plenty of DENIED messages; repeated "target=*" value.

2017-03-01 Thread daniel curtis
Hi Seth Yes, I thnik you're right. But I just wanted to notice this problem, because of no result "aa-unconfined" utility. The latest Linux kernel version, which is used in 12.04 LTS Release is 3.2.86, while "Precise" is still at 3.2.79 level. Anyway, according to the kernel mailing list the mainl

Re: [apparmor] aa-unconfined, netstat(8) profile: plenty of DENIED messages; repeated "target=*" value.

2017-02-28 Thread Seth Arnold
On Tue, Feb 28, 2017 at 08:19:41PM +0100, daniel curtis wrote: > Feb 28 19:37:40 t4 kernel: [17794.190290] type=1400 > audit(1488307060.421:49): apparmor="DENIED" operation="ptrace" parent=4186 > profile="/bin/netstat" pid=4189 comm="netstat" target=B00280F4B00280F40301 Hi Daniel, it looks like th

[apparmor] aa-unconfined, netstat(8) profile: plenty of DENIED messages; repeated "target=*" value.

2017-02-28 Thread daniel curtis
Hi Continuing my first message about netstat(8) profile [1] - here, on this mailing list - and many "target=*" entries, I would like to write another one example of a problem with netstat(8) and probably: "-p" option along with "capability sys_ptrace" etc. Today, I've noticed a pretty strange thi