Skip to content
Commit 2594d936 authored by Georgia Garcia's avatar Georgia Garcia
Browse files

add profiles for applications in unconfined mode

Adding profiles for applications even if they allow all operations
will allow them to be referenced as peer by other policies. This is a
step towards a more comprehensive system policy, adding names, instead
of just unconfined, to peers of existing policy and to applications
that are known to use unprivileged user namespaces.

Note that unconfined mode should be changed for default_allow
when !1109

 is
merged.

Signed-off-by: default avatarGeorgia Garcia <georgia.garcia@canonical.com>
parent 9bba464d
Loading
Loading
Loading
Loading
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Please register or to comment