logo

apparmor.d

Unnamed repository; edit this file 'description' to name the repository. git clone https://hacktivis.me/git/apparmor.d.git

sbin.dhcpcd (1013B)


  1. # Copyright 2020-2023 Haelwenn (lanodan) Monnier <contact+apparmor.d@hacktivis.me>
  2. # Distributed under the terms of the GNU General Public License v2
  3. include <tunables/global>
  4. /sbin/dhcpcd flags=(complain) {
  5. include <abstractions/base>
  6. include <abstractions/consoles>
  7. include <abstractions/nameservice>
  8. capability net_admin,
  9. capability net_raw,
  10. capability sys_chroot,
  11. capability setgid,
  12. capability setuid,
  13. signal receive set=term,
  14. signal send peer="ntpd",
  15. /lib{,64}/dhcpcd/dhcpcd-run-hooks ix,
  16. /sbin/dhcpcd mr,
  17. owner /etc/dhcpcd.conf r,
  18. /etc/udev/udev.conf r,
  19. /run/udev/data/* r,
  20. /sys/devices/**/net/**/uevent r,
  21. /sys/devices/virtual/net/**/uevent r,
  22. owner /proc/*/mountinfo r,
  23. owner /proc/*/net/if_inet6 r,
  24. owner /proc/*/stat r,
  25. /proc/cpuinfo r,
  26. /proc/sys/kernel/hostname r,
  27. owner /proc/sys/net/** rw,
  28. owner /run/dhcpcd/** rwlk,
  29. owner /var/lib/dhcpcd/* rw,
  30. /bin/gsed rix,
  31. /usr/bin/cmp rix,
  32. /bin/rm rix,
  33. /etc/ntpd.conf r,
  34. unix (getattr),
  35. }