(amd64)ubuntu@localhost:/var/lib/apparmor/profiles$ cat click_hostapd.sideload_hostapd_2.4-1
# Description: unconfined AppArmor template
# Usage: restricted
# vim:syntax=apparmor
#include <tunables/global>
# Define vars with unconfined since autopilot rules may reference them
# Specified profile variables
@{APP_APPNAME}="hostapd"
@{APP_ID_DBUS}="hostapd_2esideload_5fhostapd_5f2_2e4_2d1"
@{APP_PKGNAME_DBUS}="hostapd_2esideload"
@{APP_PKGNAME}="hostapd.sideload"
@{APP_VERSION}="2.4-1"
@{CLICK_DIR}="{/apps,/oem}"
# TODO: when v3 userspace lands, use:
# profile "hostapd.sideload_hostapd_2.4-1" (unconfined) {}
# v2 compatible wildly permissive profile
profile "hostapd.sideload_hostapd_2.4-1" (attach_disconnected) {
capability,
network,
/ rwkl,
/** rwlkm,
/** pix,
mount,
remount,
umount,
pivot_root,
dbus,
signal,
ptrace,
unix,
}