2007-05-24 09:55:37 +00:00
|
|
|
# vim:syntax=apparmor
|
2007-05-31 00:30:48 +00:00
|
|
|
# Last Modified: Wed May 30 17:00:04 2007
|
2007-05-24 09:55:37 +00:00
|
|
|
#include <tunables/global>
|
|
|
|
|
2007-08-23 11:23:36 +00:00
|
|
|
/usr/sbin/exim {
|
2007-05-24 09:55:37 +00:00
|
|
|
#include <abstractions/base>
|
|
|
|
#include <abstractions/nameservice>
|
2007-09-27 23:55:41 +00:00
|
|
|
#include <abstractions/consoles>
|
2007-05-31 00:30:48 +00:00
|
|
|
#include <abstractions/user-mail>
|
2007-05-24 09:55:37 +00:00
|
|
|
|
|
|
|
capability chown,
|
|
|
|
capability dac_override,
|
|
|
|
capability fowner,
|
|
|
|
capability setgid,
|
|
|
|
capability setuid,
|
|
|
|
|
|
|
|
/etc/aliases r,
|
|
|
|
/etc/exim/** r,
|
|
|
|
/etc/greylistd/whitelist-hosts r,
|
|
|
|
/proc/*/mounts r,
|
|
|
|
/proc/loadavg r,
|
|
|
|
/proc/net/if_inet6 r,
|
2007-05-31 00:30:48 +00:00
|
|
|
/usr/bin/procmail Px,
|
|
|
|
/usr/lib/cyrus/bin/deliver Px,
|
2007-05-24 09:55:37 +00:00
|
|
|
/usr/lib/majordomo/wrapper px,
|
|
|
|
/usr/sbin/exim ixr,
|
|
|
|
/var/lib/greylistd/whitelist-hosts r,
|
|
|
|
/var/lib/majordomo/lists/* r,
|
|
|
|
/var/log/exim/*.log w,
|
|
|
|
/var/run/exim.pid w,
|
|
|
|
/var/run/greylistd/socket w,
|
|
|
|
/var/spool/exim/** rw,
|
|
|
|
}
|