This is more than just the home interface-- we have AppArmor rules that
use the @{HOME} variable in the default template and the launcher/snap-
run sets up various environment variables (including HOME).

It would be easy enough for the launcher/snap-run run to determine the
home directory of the user and set the env vars appropriately. You can
adjust what @{HOME} expands to with AppArmor policy by dropping files in
/etc/apparmor.d/tunables/home.d as well. The trick would be keeping
/etc/apparmor.d/tunables/home.d up to date for new users that are added
after snaps are run. Any options would include snapd managing
/etc/apparmor.d/tunables/home.d/snap.* files in some manner, and when
changed, regenerate all the security policy.

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1607710

Title:
  Home directories listed in /etc/passwd should be honoured

To manage notifications about this bug go to:
https://bugs.launchpad.net/snappy/+bug/1607710/+subscriptions

-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to