some further info: I now have installed auditd to have the log in /var/log/audit/audit.log. I added to usr.bin.clamd: capability setgid, capability setuid, and used aa-logprof to add some more items: capability chown, capability dac_override, capability fsetid, capability sys_admin, But, after reload apparmor, aa-enforce clamd, and restart clamd I still have "ERROR: initgroups() failed" at clamd start. It still needs aa-complain clamd to successfully start clamd
-- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1404762 Title: apparmor profile usr.sbin.clamd does not allow ScanOnAccess via fanotify To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/apparmor/+bug/1404762/+subscriptions -- ubuntu-bugs mailing list [email protected] https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
