From 11a32e337182df5161299e648dc9fdc2b41e47cc Mon Sep 17 00:00:00 2001 From: Vincas Dargis Date: Mon, 25 Mar 2019 19:31:41 +0200 Subject: [PATCH] fix(apparmor): Make network rules more strict Explicitly define allowed network domain. --- security/apparmor/2.12.1/usr.bin.qtox | 6 ++++-- security/apparmor/2.13.2/usr.bin.qtox | 6 ++++-- 2 files changed, 8 insertions(+), 4 deletions(-) diff --git a/security/apparmor/2.12.1/usr.bin.qtox b/security/apparmor/2.12.1/usr.bin.qtox index 382e8b338..ac30886a4 100644 --- a/security/apparmor/2.12.1/usr.bin.qtox +++ b/security/apparmor/2.12.1/usr.bin.qtox @@ -38,8 +38,10 @@ profile qtox /usr{,/local}/bin/qtox { # Networking - network tcp, - network udp, + network inet udp, + network inet6 udp, + network inet tcp, + network inet6 tcp, # DBus diff --git a/security/apparmor/2.13.2/usr.bin.qtox b/security/apparmor/2.13.2/usr.bin.qtox index 21b85e3a8..0e048cd39 100644 --- a/security/apparmor/2.13.2/usr.bin.qtox +++ b/security/apparmor/2.13.2/usr.bin.qtox @@ -45,8 +45,10 @@ profile qtox /usr{,/local}/bin/qtox { # Networking - network tcp, - network udp, + network inet udp, + network inet6 udp, + network inet tcp, + network inet6 tcp, # DBus