no audit log entry for capability net_raw

Bug #1797764 reported by Christian Boltz
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
AppArmor
New
Undecided
Unassigned

Bug Description

Denials for capability net_raw aren't logged in audit.log or dmesg.

Tested on openSUSE with kernel-default-4.18.12-1.5.x86_64

Reproducer:
- edit the ping profile, comment out "capability net_raw," and reload the profile
- run "ping cboltz.de" - it will error out with "ping: socket: Operation not permitted"
- check dmesg or audit.log - there isn't a DENIED line for capability net_raw

Tags: aa-kernel
To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.