[Pkg-dns-devel] Bug#882731: apparmor policy only accepts root.key in /var/lib/unbound

Simon Deziel simon at sdeziel.info
Mon Nov 27 14:06:24 UTC 2017


On 2017-11-26 03:31 AM, Peter Palfrader wrote:
> The apparmor policy for unbound allows access to
> /var/lib/unbound/root.key*, but it does not allow access to any
> other dynamically updated key the admin might have put there,
> such as debian.org.key on DSA infrastructure.
> 
> Please allow access to all key files.

Please see the attached patch.

Regards,
Simon
-------------- next part --------------
A non-text attachment was scrubbed...
Name: bug882731.diff
Type: text/x-patch
Size: 651 bytes
Desc: not available
URL: <http://lists.alioth.debian.org/pipermail/pkg-dns-devel/attachments/20171127/bbef2e2b/attachment.bin>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 801 bytes
Desc: OpenPGP digital signature
URL: <http://lists.alioth.debian.org/pipermail/pkg-dns-devel/attachments/20171127/bbef2e2b/attachment.sig>


More information about the pkg-dns-devel mailing list