> An alternative without modifying snap-confine would be to have two > snap-confine profiles, one for > strict and one for classic, and adjust the classic template to transition to > the classic > snap-confine template which has rules allowing 'rw' access to files and > 'unix' for sockets.
To me this sounds like the easier of the two approaches - can you outline any particular (dis)advantages to either approach? -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1849753 Title: AppArmor profile prohibits classic snap from inheriting file descriptors To manage notifications about this bug go to: https://bugs.launchpad.net/apparmor/+bug/1849753/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs