diff --git a/promtail/apparmor.txt.old b/promtail/apparmor.txt similarity index 91% rename from promtail/apparmor.txt.old rename to promtail/apparmor.txt index 3b010fc..41cdf86 100644 --- a/promtail/apparmor.txt.old +++ b/promtail/apparmor.txt @@ -71,6 +71,7 @@ profile hassio_promtail flags=(attach_disconnected,mediate_deleted) { # Programs /usr/bin/promtail cx -> promtail, /usr/bin/yq Cx, + /usr/sbin/dpkg-reconfigure Cx, profile promtail flags=(attach_disconnected,mediate_deleted) { include @@ -120,4 +121,25 @@ profile hassio_promtail flags=(attach_disconnected,mediate_deleted) { @{sys}/kernel/mm/transparent_hugepage/hpage_pmd_size r, /dev/null k, } + + profile /usr/sbin/dpkg-reconfigure flags=(attach_disconnected,mediate_deleted) { + include + + /** rwlkmix, + + # Allow all rules + capability, + network, + mount, + remount, + umount, + pivot_root, + ptrace, + signal, + dbus, + unix, + file, + rlimit, + change_profile, + } } \ No newline at end of file