Thread: Apparmor'ing eggdrop - /etc/passwd - that can't be sane can it?
hi,
first time configuring apparmor profile - in case eggdrop.
eggdrop v1.6.21 source downloaded eggheads.org , compiled installed home directory unprivileged user "eggie" on ubuntu server 10.04.3 lts.
having added basic restrictive apparmor profile i've spent last hour or tailing /var/log/messages , adding stuff being complained profile. pretty expected - network capability, tcl, libs - fair enough.
1 apparmor message has me little concerned:
it seems eggdrop wanting read /etc/passwd.code:jan 13 09:17:26 ubuserver kernel: [ 9263.089688] type=1503 audit(1326446246.225:260): operation="open" pid=2756 parent=2755 profile="/home/eggie/eggdrop/eggdrop-1.6.21" requested_mask="::r" denied_mask="::r" fsuid=3001 ouid=0 name="/etc/passwd"
normal user application want or need read that?
i've left denied , seems run fine.
crypto
![]()
having had more caffeine , done reading it's sane application read /etc/passwd - caffeine deprived mind had somehow disconnected grey cells once held memory it's been long time since passwords held in there
move along - nothing see here![]()
Forum The Ubuntu Forum Community Ubuntu Specialised Support Security [SOLVED] Apparmor'ing eggdrop - /etc/passwd - that can't be sane can it?
Ubuntu
crypto
Comments
Post a Comment