[pkg-apparmor] Bug#768357: Dovecot: Installing apparmor completely breaks dovecot as profiles do not match dovecot processes.

intrigeri intrigeri at debian.org
Fri Nov 7 09:32:25 UTC 2014


Hi,

Barry Pearce wrote (06 Nov 2014 21:11:21 GMT) :
> The grep for DEN produced nothing. 

Ah, then maybe it's logging to auditd, then. The place to look at
would then be /var/log/audit/audit.log. (If you send more information,
please do so in a way that's not get rewrapped and
unreadable. Thanks!)

So, it seems that the dovecot profile is in complain mode, but it
indeed contains:

  /usr/lib/dovecot/anvil Px,

... which can't work since we're not shipping a profile for anvil.
The profile *is* present in the Vcs-Bzr, but it's not listed in
debian/apparmor-profiles.install, hence the bug.

I'll look at it shortly, and will investigate using globs in that file
so that we don't miss installing new profiles again.

Cheers
-- 
intrigeri



More information about the pkg-apparmor-team mailing list