abi , #include profile hostapd /usr/sbin/hostapd { #include #include capability net_admin, capability net_raw, network packet, network raw, # for RADIUS network inet dgram, network inet6 dgram, # grant read access to config files /etc/hostapd.* r, /etc/libnl/classid r, #/proc/*/net/psched r, # grant access to RFKILL control device /dev/rfkill rw, /run/hostapd/ rw, /run/hostapd/* rw, }