I de-compiled the dfa (attached), and as expected the walk matches up
with apparmor_parser -D dfa-states

The specific deny message when walked ends in state 21, which has the
correct rw permissions associated. If the query has a trailing \0 the
dfa will transition into the non-match state.

Important states to note from the walk:
{0} non-matching state
{1} start
{7} start of system/session dbus match
{48} start of name match
{54} start of peer match
{61} start of path match
{194} start of iface match
{21} start & finish of member/method match


** Attachment added: "Decompile dump of loaded dfa"
   
https://bugs.launchpad.net/ubuntu/+source/apparmor/+bug/1511791/+attachment/4517923/+files/wpa-dfa.txt

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1511791

Title:
  dbus rule regression with wpa supplicant profile

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/apparmor/+bug/1511791/+subscriptions

-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to