Codebase list unbound / 10be8f9
d/apparmor-profile: add comment about the control keys Michael Tokarev 2 years ago
1 changed file(s) with 3 addition(s) and 0 deletion(s). Raw diff Collapse all Expand all
2727 # non-chrooted paths
2828 /etc/unbound/** r,
2929 owner /etc/unbound/*.key* rw,
30 # explicitly deny (and audit) attempts to write to the key files
31 # this should be unnecessary after switch to /run/unbound.ctl control socket
32 # (here and below)
3033 audit deny /etc/unbound/unbound_control.{key,pem} rw,
3134 audit deny /etc/unbound/unbound_server.key w,
3235