
Globbed Version
Accessed by clicking Glob as described in the next step. For information
about globbing syntax, refer to
Section 3.6, “Pathnames and Globbing”
(page 73).
Actual Pathname
This is the literal path to which the program needs access so that it can
run properly.
b
For
Figure 3.5, “Learning Mode Exception: Defining Execute Permissions
for an Entry”
(page 44): Select the one that satisfies the request for access
by choosing one of the following:
Inherit
stay in the same security profile (parent's profile)
Profile
requires that a separate profile exists for the executed program
Unconfined
program executed without a security profile
WARNING
Unless absolutely necessary, do not run unconfined. Choosing
the Unconfined option executes the new program without any
protection from AppArmor.
4
After you select a directory path, you need to process it as an entry into the
Novell AppArmor profile by clicking Allow or Deny. If you are not satisfied with
the directory path entry as it is displayed, you can also Glob or Edit it.
The following options are available to process the learning mode entries and to
build the profile:
Allow
Grant the program access to the specified directory path entries. The Profile
Creation Wizard suggests file permission access. For more information about
this, refer to
Section 3.7, “File Permission Access Modes”
(page 74).
Building Novell AppArmor Profiles
45
Содержание APPARMOR 1.2
Страница 1: ...Novell AppArmor Powered by Immunix Administration Guide www novell com 1 2 09 29 2005...
Страница 4: ......
Страница 14: ......
Страница 116: ......
Страница 128: ......