| Distribution | Name | Profile | Created At | Changelog | View Count | Username | |||
| opensuse10.3 | /usr/bin/zypper | #include <tunables/global> /usr/bin/zypper flags=(complain) { #include <abstractions/base> #include <abstractions/nameservice> #include <abstractions/user-tmp> capability ipc_lock, /bin/cp ixr, /etc/rpm/ r, /etc/rpm/macros.* r, /etc/sysconfig/proxy r, /etc/sysconfig/storage r, /etc/zypp/repos.d/ r, /etc/zypp/repos.d/*.repo r, /etc/zypp/zypp.conf r, /proc/cpuinfo r, /proc/meminfo r, /proc/stat r, /usr/bin/gpg2 ixr, /usr/bin/zypper mr, /var/adm/mount/** rw, /var/cache/zypp/raw/** rw, /var/cache/zypp/zypp.db krw, /var/lib/rpm/ w, /var/lib/rpm/Basenames r, /var/lib/rpm/Name r, /var/lib/rpm/Packages kr, /var/lib/zypp/db/languages/ r, /var/lib/zypp/db/patches/ r, /var/lib/zypp/db/patterns/ r, /var/lib/zypp/db/products/ r, /var/lib/zypp/db/selections/ r, /var/log/zypper.log w, /var/run/zypp.pid krw, } | over 2 years ago | lots of new profiles from gnome session startup | 63 | jmichael | Edit | History | |
| opensuse10.3 | /usr/bin/zypper | #include <tunables/global> /usr/bin/zypper flags=(complain) { #include <abstractions/base> #include <abstractions/nameservice> #include <abstractions/user-tmp> capability fsetid, capability ipc_lock, /bin/cp ixr, /etc/rpm/ r, /etc/rpm/macros.* r, /etc/sysconfig/proxy r, /etc/sysconfig/storage r, /etc/zypp/repos.d/ r, /etc/zypp/repos.d/*.repo r, /etc/zypp/zypp.conf r, /proc/cpuinfo r, /proc/meminfo r, /proc/stat r, /usr/bin/gpg2 ixr, /usr/bin/zypper mr, /var/adm/mount/** rw, /var/cache/zypp/raw/** rw, /var/cache/zypp/zypp.db krw, /var/lib/rpm/ w, /var/lib/rpm/Basenames r, /var/lib/rpm/Name r, /var/lib/rpm/Packages kr, /var/lib/zypp/db/languages/ r, /var/lib/zypp/db/patches/ r, /var/lib/zypp/db/patterns/ r, /var/lib/zypp/db/products/ r, /var/lib/zypp/db/selections/ r, /var/log/zypper.log w, /var/run/zypp.pid krw, } | over 2 years ago | zypper and firefox updates | 67 | jmichael | Edit | History | |
| opensuse10.3 | /usr/bin/zypper | #include <tunables/global> /usr/bin/zypper flags=(complain) { #include <abstractions/base> #include <abstractions/nameservice> #include <abstractions/user-tmp> capability fsetid, capability ipc_lock, /bin/cp ixr, /etc/rpm/ r, /etc/rpm/macros.* r, /etc/sysconfig/proxy r, /etc/sysconfig/storage r, /etc/zypp/repos.d/ r, /etc/zypp/repos.d/*.repo r, /etc/zypp/zypp.conf r, /proc/cpuinfo r, /proc/meminfo r, /proc/stat r, /usr/bin/gpg2 ixr, /usr/bin/zypper mr, /usr/share/zypp/schema/** r, /var/adm/mount/** rw, /var/cache/zypp/raw/** rw, /var/cache/zypp/zypp.db krw, /var/lib/rpm/ w, /var/lib/rpm/Basenames r, /var/lib/rpm/Name r, /var/lib/rpm/Packages kr, /var/lib/zypp/db/languages/ r, /var/lib/zypp/db/patches/ r, /var/lib/zypp/db/patterns/ r, /var/lib/zypp/db/patterns/* r, /var/lib/zypp/db/products/ r, /var/lib/zypp/db/products/* r, /var/lib/zypp/db/selections/ r, /var/log/zypper.log w, /var/run/zypp.pid krw, } | over 2 years ago | few more profile tweaks | 52 | jmichael | Edit | History | |
| opensuse10.3 | /usr/bin/zypper | #include <tunables/global> /usr/bin/zypper flags=(complain) { #include <abstractions/base> #include <abstractions/nameservice> #include <abstractions/user-tmp> capability fsetid, capability ipc_lock, /bin/cp ixr, /bin/rpm Ux, /etc/rpm/ r, /etc/rpm/macros.* r, /etc/sysconfig/proxy r, /etc/sysconfig/storage r, /etc/zypp/repos.d/ r, /etc/zypp/repos.d/*.repo r, /etc/zypp/zypp.conf r, /proc/cpuinfo r, /proc/meminfo r, /proc/stat r, /usr/bin/gpg2 ixr, /usr/bin/zypper mr, /usr/share/zypp/schema/** r, /var/adm/mount/** rw, /var/cache/zypp/raw/** rw, /var/cache/zypp/zypp.db krw, /var/lib/rpm/ w, /var/lib/rpm/Basenames r, /var/lib/rpm/Name r, /var/lib/rpm/Packages kr, /var/lib/zypp/db/languages/ r, /var/lib/zypp/db/patches/ r, /var/lib/zypp/db/patterns/ r, /var/lib/zypp/db/patterns/* r, /var/lib/zypp/db/products/ r, /var/lib/zypp/db/products/* r, /var/lib/zypp/db/selections/ r, /var/log/zypper.log w, /var/run/zypp.pid krw, } | over 2 years ago | let zypper do rpm stuff unmolested and more gnome tweaks | 35 | jmichael | Edit | History | |
| opensuse10.3 | /usr/bin/zypper | #include <tunables/global> /usr/bin/zypper { #include <abstractions/base> #include <abstractions/nameservice> #include <abstractions/user-tmp> capability fsetid, capability ipc_lock, /bin/cp ixr, /bin/rpm Ux, /etc/rpm/ r, /etc/rpm/macros.* r, /etc/sysconfig/proxy r, /etc/sysconfig/storage r, /etc/zypp/repos.d/ r, /etc/zypp/repos.d/*.repo r, /etc/zypp/zypp.conf r, /proc/*/mounts r, /proc/cpuinfo r, /proc/meminfo r, /proc/stat r, /usr/bin/gpg2 ixr, /usr/bin/zypper mr, /usr/share/zypp/schema/** r, /var/adm/mount/** rw, /var/cache/zypp/ r, /var/cache/zypp/raw/** rw, /var/cache/zypp/zypp.db krw, /var/cache/zypp/zypp.db-journal w, /var/lib/rpm/ w, /var/lib/rpm/Basenames r, /var/lib/rpm/Name r, /var/lib/rpm/Packages kr, /var/lib/zypp/db/languages/ r, /var/lib/zypp/db/patches/ r, /var/lib/zypp/db/patterns/ r, /var/lib/zypp/db/patterns/* r, /var/lib/zypp/db/products/ r, /var/lib/zypp/db/products/* r, /var/lib/zypp/db/selections/ r, /var/log/zypper.log w, /var/run/zypp.pid krw, /var/tmp/ rw, } | over 2 years ago | switch all profiles to enforce mode + a few updates | 42 | jmichael | Edit | History | |
| opensuse10.3 | /usr/bin/zypper | #include <tunables/global> /usr/bin/zypper { #include <abstractions/base> #include <abstractions/nameservice> #include <abstractions/user-tmp> capability fsetid, capability ipc_lock, /bin/cp ixr, /bin/rpm Ux, /etc/rpm/ r, /etc/rpm/macros.* r, /etc/sysconfig/proxy r, /etc/sysconfig/storage r, /etc/zypp/repos.d/ r, /etc/zypp/repos.d/*.repo r, /etc/zypp/zypp.conf r, /proc/*/mounts r, /proc/cpuinfo r, /proc/meminfo r, /proc/stat r, /sys/bus/ r, /usr/bin/gpg2 ixr, /usr/bin/zypper mr, /usr/share/zypp/schema/** r, /var/adm/mount/** rw, /var/cache/zypp/ r, /var/cache/zypp/raw/** rw, /var/cache/zypp/zypp.db krw, /var/cache/zypp/zypp.db-journal w, /var/lib/rpm/ w, /var/lib/rpm/Basenames r, /var/lib/rpm/Name r, /var/lib/rpm/Packages kr, /var/lib/zypp/db/languages/ r, /var/lib/zypp/db/patches/ r, /var/lib/zypp/db/patterns/ r, /var/lib/zypp/db/patterns/* r, /var/lib/zypp/db/products/ r, /var/lib/zypp/db/products/* r, /var/lib/zypp/db/selections/ r, /var/log/zypper.log w, /var/run/zypp.pid krw, /var/tmp/ rw, } | over 2 years ago | couple x entries for eog and a zypper twek | 52 | jmichael | Edit | History | |
| opensuse10.3 | /usr/bin/zypper | #include <tunables/global> /usr/bin/zypper flags=(complain) { #include <abstractions/base> #include <abstractions/nameservice> #include <abstractions/user-tmp> capability fsetid, capability ipc_lock, /bin/cp ixr, /bin/rpm Ux, /etc/rpm/ r, /etc/rpm/macros.* r, /etc/sysconfig/proxy r, /etc/sysconfig/storage r, /etc/zypp/repos.d/ r, /etc/zypp/repos.d/*.repo r, /etc/zypp/zypp.conf r, /proc/*/mounts r, /proc/cpuinfo r, /proc/meminfo r, /proc/stat r, /sys/bus/ r, /usr/bin/gpg2 ixr, /usr/bin/zypper mr, /usr/share/zypp/schema/** r, /var/adm/mount/** rw, /var/cache/zypp/ r, /var/cache/zypp/raw/** rw, /var/cache/zypp/zypp.db krw, /var/cache/zypp/zypp.db-journal w, /var/lib/rpm/ w, /var/lib/rpm/Basenames r, /var/lib/rpm/Name r, /var/lib/rpm/Packages kr, /var/lib/zypp/db/languages/ r, /var/lib/zypp/db/patches/ r, /var/lib/zypp/db/patterns/ r, /var/lib/zypp/db/patterns/* r, /var/lib/zypp/db/products/ r, /var/lib/zypp/db/products/* r, /var/lib/zypp/db/selections/ r, /var/log/zypper.log w, /var/run/zypp.pid krw, /var/tmp/ rw, } | over 2 years ago | argh, switch things back to complain for a while | 47 | jmichael | Edit | History | |
| opensuse10.3 | /usr/bin/zypper | #include <tunables/global> /usr/bin/zypper flags=(complain) { #include <abstractions/base> #include <abstractions/consoles> #include <abstractions/nameservice> #include <abstractions/user-tmp> capability fsetid, capability ipc_lock, /bin/cp ixr, /bin/rpm Ux, /etc/rpm/ r, /etc/rpm/macros.* r, /etc/sysconfig/proxy r, /etc/sysconfig/storage r, /etc/zypp/repos.d/ r, /etc/zypp/repos.d/*.repo r, /etc/zypp/zypp.conf r, /proc/*/mounts r, /proc/cpuinfo r, /proc/meminfo r, /proc/stat r, /sys/bus/ r, /usr/bin/gpg2 ixr, /usr/bin/zypper mr, /usr/share/zypp/schema/** r, /var/adm/mount/** rw, /var/cache/zypp/ r, /var/cache/zypp/raw/** rw, /var/cache/zypp/zypp.db krw, /var/cache/zypp/zypp.db-journal w, /var/lib/rpm/ w, /var/lib/rpm/Basenames r, /var/lib/rpm/Name r, /var/lib/rpm/Packages kr, /var/lib/zypp/db/languages/ r, /var/lib/zypp/db/patches/ r, /var/lib/zypp/db/patterns/ r, /var/lib/zypp/db/patterns/* r, /var/lib/zypp/db/products/ r, /var/lib/zypp/db/products/* r, /var/lib/zypp/db/selections/ r, /var/log/zypper.log w, /var/run/zypp.pid krw, /var/tmp/ rw, } | over 2 years ago | couple minor changes | 47 | jmichael | Edit | History | |
| opensuse10.3 | /usr/bin/zypper | #include <tunables/global> /usr/bin/zypper flags=(complain) { #include <abstractions/authentication> #include <abstractions/base> #include <abstractions/consoles> #include <abstractions/nameservice> #include <abstractions/user-tmp> capability fsetid, capability ipc_lock, /bin/cp ixr, /bin/rpm Ux, /etc/rpm/ r, /etc/rpm/macros.* r, /etc/sysconfig/proxy r, /etc/sysconfig/storage r, /etc/zypp/repos.d/ r, /etc/zypp/repos.d/*.repo r, /etc/zypp/zypp.conf r, /proc/*/mounts r, /proc/cpuinfo r, /proc/meminfo r, /proc/stat r, /sys/bus/ r, /usr/bin/gpg2 ixr, /usr/bin/zypper mr, /usr/share/zypp/schema/** r, /var/adm/mount/** rw, /var/cache/zypp/ r, /var/cache/zypp/raw/** rw, /var/cache/zypp/zypp.db krw, /var/cache/zypp/zypp.db-journal w, /var/lib/rpm/ w, /var/lib/rpm/Basenames r, /var/lib/rpm/Name r, /var/lib/rpm/Packages kr, /var/lib/zypp/db/languages/ r, /var/lib/zypp/db/patches/ r, /var/lib/zypp/db/patterns/ r, /var/lib/zypp/db/patterns/* r, /var/lib/zypp/db/products/ r, /var/lib/zypp/db/products/* r, /var/lib/zypp/db/selections/ r, /var/log/zypper.log w, /var/run/zypp.pid krw, /var/tmp/ rw, } | over 2 years ago | more updates | 96 | jmichael | Edit | History |