Re: [apparmor] [PATCH 2/2] parser: Properly parse named transition targets

2016-02-26 Thread John Johansen
On 02/26/2016 04:22 PM, Tyler Hicks wrote: > On 2016-02-17 22:47:41, John Johansen wrote: >> On 02/11/2016 01:57 PM, Tyler Hicks wrote: >>> https://launchpad.net/bugs/1540666 >>> >>> Reuse the new parse_label() function to initialize named_transition >>> structs so that transition targets, when

Re: [apparmor] [PATCH] parser: Clean up pivot_root target parsing

2016-02-26 Thread John Johansen
On 02/26/2016 04:07 PM, Tyler Hicks wrote: > Instead of reusing opt_named_transition and be forced to reconstruct the > target path when is looks like ":odd:target", create simpler grammer > rules that have nothing to do with named transitions and namespaces. > > Signed-off-by: Tyler Hicks

[apparmor] [PATCH] parser: Clean up pivot_root target parsing

2016-02-26 Thread Tyler Hicks
Instead of reusing opt_named_transition and be forced to reconstruct the target path when is looks like ":odd:target", create simpler grammer rules that have nothing to do with named transitions and namespaces. Signed-off-by: Tyler Hicks --- parser/parser_yacc.y | 22

Re: [apparmor] [profile: plugin-container] the dbus machine-id: deny or allow 'r'?

2016-02-26 Thread Simon McVittie
On 25/02/16 17:18, daniel curtis wrote: > Anyway, there is a one thing which wonders me: > '/var/lib/dbus/machine-id'. According to the DENIED messages in a log > files, there is something like this: > > name="/var/lib/dbus/machine-id", denied mask 'r' The systemd machine ID (always