~apparmor-dev/apparmor/2.9

Viewing all changes in revision 3063.

  • Committer: Christian Boltz
  • Date: 2017-08-29 11:32:57 UTC
  • Revision ID: apparmor@cboltz.de-20170829113257-js559r4u0mrfqiey
Samba profile updates for ActiveDirectory / Kerberos

The Samba package used by the INVIS server (based on openSUSE) needs
some additional Samba permissions for the added ActiveDirectory /
Kerberos support.

As discussed with Seth, add /var/lib/sss/mc/initgroups read permissions
to abstractions/nameservice instead of only to the smbd profile because
it's probably needed by more than just Samba if someone uses sss.


Acked-by: Seth Arnold <seth.arnold@canonical.com> for 2.9, 2.10, 2.11 and trunk.

expand all expand all

Show diffs side-by-side

added added

removed removed

Lines of Context: