Thanks for your confirmation. Does this imply that 'deny network' isn't going to work in any future debian unless someone has published a patch before the kernel is built(Or, unless this functionality goes in the kernel proper, eliminating the need for a patch.)?
Are there any plans to rectify this? Without a fix it may be time to drop apparmor in favor of something else. Thanks.