From 4b647692ec2ceaec64010ec24ddeac3e7183eee4 Mon Sep 17 00:00:00 2001 From: John Johansen Date: Thu, 16 Mar 2023 16:04:17 -0700 Subject: [PATCH] UBUNTU: SAUCE: apparmor: advertise availability of exended perms BugLink: https://bugs.launchpad.net/bugs/2012136 Userspace won't load policy using extended perms unless it knows the kernel can handle them. Advertise that extended perms are supported in the feature set. Signed-off-by: John Johansen Signed-off-by: Andrea Righi --- security/apparmor/apparmorfs.c | 2 ++ 1 file changed, 2 insertions(+) diff --git a/security/apparmor/apparmorfs.c b/security/apparmor/apparmorfs.c index 8fef40a67f5df..9019e55e9ac42 100644 --- a/security/apparmor/apparmorfs.c +++ b/security/apparmor/apparmorfs.c @@ -2548,6 +2548,8 @@ static struct aa_sfs_entry aa_sfs_entry_policy[] = { AA_SFS_FILE_BOOLEAN("set_load", 1), /* number of out of band transitions supported */ AA_SFS_FILE_U64("outofband", MAX_OOB_SUPPORTED), + AA_SFS_FILE_U64("permstable32_version", 1), + AA_SFS_FILE_STRING("permstable32", "allow deny subtree cond kill complain prompt audit quiet hide xindex tag label"), { } };