Novell APPARMOR Admin Manual page 63

Hide thumbs Also See for APPARMOR:
Table of Contents

Advertisement

Two Methods of Profiling
that any changes to DNS configuration and the associated nameser-
vice profile package can be made once, rather than needing to revise
many profiles.
Profile:
/usr/sbin/
Path:
/etc/group
New Mode: r
[1 - #include <abstractions/nameservice>]
2 - /etc/group
[(A)llow] / (D)eny / (N)ew / (G)lob / Glob w/(E)xt /
Abo(r)t / (F)inish
Keystroke responses to this question are:
• Press Enter: Accepts the entry highlighted with []. Press the
Enter key if you want to allow access to the selected directory path.
• "A"llow: Select Allow if you want to grant the program access to
the specified directory path entries. Novell AppArmor suggests file
p e r mi s s i o n a c c e s s . F o r mo r e i n f o r ma t i o n o n t h i s , r e f e r t o " File Per-
mission Access Modes" o n p a g e6 9
• "D"eny: Select Deny to prevent the program from accessing the
specified directory path entries. Novell AppArmor will then move
on to the next event.
• " N " e w : Prompts you to enter your own rule for this event, allow-
ing you to specify whatever form of regular expression you want. If
the expression you enter does not actually satisfy the event that
prompted the question in the first place, Novell AppArmor will ask
you for confirmation and let you re-enter the expression.
• "G"lob: Select Glob once once to modify the directory path (by
using wildcards) to include all files in the suggested entry directory.
When you select Glob twice, access will be granted to all files and
subdirectories beneath the one shown.
F o r mo r e i n f o r ma t i o n o n g l o b b i n g s y n t a x , r e f e r t o " Path Names and
Regular Expression Matching" o n p a g e6 9 .
• G l o b w / " E " x t : When you select Glob w/Ext, the original directory
httpd2-prefork
63

Advertisement

Table of Contents
loading

Table of Contents