diff --git a/etc/apparmor.d/PyBitmessage.AppImage b/etc/apparmor.d/PyBitmessage.AppImage index 75a8f8a..10ac37b 100644 --- a/etc/apparmor.d/PyBitmessage.AppImage +++ b/etc/apparmor.d/PyBitmessage.AppImage @@ -1,15 +1,22 @@ -# Last Modified: Sat Dec 31 13:53:53 2022 -#include +# Last Modified: Fri Oct 13 05:01:46 2023 +include /**/PyBitmessage*.AppImage { - #include - #include - #include - #include + include + include + include + include + include capability dac_read_search, capability sys_admin, + network inet dgram, + network inet stream, + network inet6 dgram, + network inet6 stream, + network netlink raw, + mount fstype=fuse.PyBitmessage*.AppImage options=(ro, nosuid, nodev), umount, @@ -24,6 +31,23 @@ /etc/xdg/Trolltech.conf rk, /proc/filesystems r, /sys/devices/system/cpu/online r, + + /tmp/*/*/.mount_PyBitm*/ r, + /tmp/*/*/.mount_PyBitm*/** r, + /tmp/*/*/.mount_PyBitm*/AppRun mrix, + /tmp/*/*/.mount_PyBitm*/lib/x86_64-linux-gnu/lib*.so* mr, + /tmp/*/*/.mount_PyBitm*/usr/bin/pybitmessage mrix, + /tmp/*/*/.mount_PyBitm*/usr/bin/qt.conf mrk, + /tmp/*/*/.mount_PyBitm*/usr/lib/python2.7/**.so mr, + /tmp/*/*/.mount_PyBitm*/usr/bin/python2.7 rix, + /tmp/*/*/.mount_PyBitm*/usr/lib/x86_64-linux-gnu/**/lib*.so* mr, + /tmp/*/*/.mount_PyBitm*/usr/lib/x86_64-linux-gnu/lib*.so* mr, + /tmp/*/*/.mount_PyBitm*/lib/x86_64/lib*.so mr, + /proc/*/cmdline r, + /usr/share/themes/** r, + owner /run/*/*/sni-qt_python2*/ rw, + owner /run/*/*/sni-qt_python2*/icons/ rw, + /tmp/.mount_PyBitm*/ r, /tmp/.mount_PyBitm*/** r, /tmp/.mount_PyBitm*/AppRun mrix, @@ -42,14 +66,17 @@ /usr/share/icons/ r, /usr/share/icons/Adwaita/* r, /usr/share/icons/Adwaita/** r, - /usr/share/icons/hicolor/* r, + /usr/share/icons/gnome/* r, + /usr/share/icons/hicolor/* rk, /usr/share/mime/* r, /usr/share/pixmaps/ r, /usr/share/themes/Adwaita/** r, + owner /**/PyBitmessage*.AppImage mr, owner /etc/passwd r, + owner @{HOME}/tmp* w, owner /run/systemd/userdb/ r, - owner /run/user/*/sni-qt_python2_*/ rw, - owner /run/user/*/sni-qt_python2_*/icons/ rw, + owner /run/*/*/sni-qt_python2_*/ rw, + owner /run/*/*/sni-qt_python2_*/icons/ rw, owner /usr/local/share/fonts/** r, owner @{HOME}/.cache/fontconfig/*-le64.cache-7 r, owner @{HOME}/.config/PyBitmessage/ r, @@ -62,6 +89,6 @@ owner @{HOME}/.config/PyBitmessage/pybitmessageqt.conf rwk, owner @{HOME}/.config/PyBitmessage/singleton.lock rwk, owner @{HOME}/.config/Trolltech.conf rwk, - owner /**/PyBitmessage*.AppImage mr, } +