Also, I have added the authorization to read the file /run/xtables.lock,
so in total, the profile lines to add look like this:
- /run/xtables.lock r,
- /run/xtables.lock wk,
- /var/fwknop/fwknopd.pid r,
- /var/fwknop/fwknopd.pid wkl,
- /var/fwknop/digest.cache r,
- /var/fwknop/digest.cache wkl,
Package: fwknop-apparmor-profile
Version: 2.6.9-1
Severity: important
The AppArmor profile that comes with fwknop-server is not complete.
These are the errors I have when running in complain mode:
-
audit[29328]: AVC apparmor="ALLOWED" operatio
Package: fwknop-server
Version: 2.6.9-1+b1
Severity: important
Restarting the server using systemctl does not do anything:
See the command line:
---
root@homebox /etc/fwknop# pidof fwknopd
27175
root@homebox /etc/fwknop# systemctl restart fw
3 matches
Mail list logo