github.com/Mirantis/virtlet@v1.5.2-0.20191204181327-1659b8a48e9b/deploy/apparmor/vms (about) 1 #include <tunables/global> 2 3 profile vms flags=(attach_disconnected) { 4 #include <abstractions/libvirt-qemu> 5 6 ptrace trace peer=@{profile_name}, 7 ptrace readby, 8 ptrace tracedby, 9 10 /{usr/,}bin/sleep rix, 11 /{usr/,}bin/cut rix, 12 /{var/,}tmp/{,**} r, 13 14 /var/lib/virtlet/vms.procfile w, 15 /vms.sh rix, 16 17 @{PROC}/@{pid}/stat r, 18 19 }