usr.sbin.mysqld 1.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051
  1. # vim:syntax=apparmor
  2. # Last Modified: Tue Jun 19 17:37:30 2007
  3. #include <tunables/global>
  4. /usr/sbin/mysqld {
  5. #include <abstractions/base>
  6. #include <abstractions/nameservice>
  7. #include <abstractions/user-tmp>
  8. #include <abstractions/mysql>
  9. #include <abstractions/winbind>
  10. capability dac_override,
  11. capability sys_resource,
  12. capability setgid,
  13. capability setuid,
  14. network tcp,
  15. /etc/hosts.allow r,
  16. /etc/hosts.deny r,
  17. /etc/mysql/*.pem r,
  18. /etc/mysql/conf.d/ r,
  19. /etc/mysql/conf.d/* r,
  20. /etc/mysql/*.cnf r,
  21. /usr/lib/mysql/plugin/ r,
  22. /usr/lib/mysql/plugin/*.so* mr,
  23. /usr/sbin/mysqld mr,
  24. /usr/share/mysql/** r,
  25. /var/log/mysql.log rw,
  26. /var/log/mysql.err rw,
  27. /var/lib/mysql/ r,
  28. /var/lib/mysql/** rwk,
  29. /var/log/mysql/ r,
  30. /var/log/mysql/* rw,
  31. /var/run/mysqld/mysqld.pid w,
  32. /var/run/mysqld/mysqld.sock w,
  33. /run/mysqld/mysqld.pid w,
  34. /run/mysqld/mysqld.sock w,
  35. /ssd/log/mysql.log rw,
  36. /ssd/log/mysql.err rw,
  37. /ssd/mysql/ r,
  38. /ssd/mysql/** rwk,
  39. /ssd/log/mysql/ r,
  40. /ssd/log/mysql/* rw,
  41. /sys/devices/system/cpu/ r,
  42. # Site-specific additions and overrides. See local/README for details.
  43. #include <local/usr.sbin.mysqld>
  44. }