github.com/Mirantis/virtlet@v1.5.2-0.20191204181327-1659b8a48e9b/deploy/apparmor/vms (about)

     1  #include <tunables/global>
     2  
     3  profile vms flags=(attach_disconnected) {
     4    #include <abstractions/libvirt-qemu>
     5  
     6    ptrace trace peer=@{profile_name},
     7    ptrace readby,
     8    ptrace tracedby,
     9  
    10    /{usr/,}bin/sleep rix,
    11    /{usr/,}bin/cut rix,
    12    /{var/,}tmp/{,**} r,
    13  
    14    /var/lib/virtlet/vms.procfile w,
    15    /vms.sh rix,
    16  
    17    @{PROC}/@{pid}/stat r,
    18  
    19  }