Package: apparmor-profiles Version: 2.10.95-5 Severity: normal It seems like the default policy should be more permissive for dovecot:
Nov 8 15:02:02 laptop kernel: [140570.814413] audit: type=1400 audit(1478613722.992:364): apparmor="ALLOWED" operation="file_mmap" profile="/usr/lib/dovecot/lmtp" name="/usr/lib/x86_64-linux-gnu/ld-2.24.so" pid=7439 comm="lmtp" requested_mask="m" denied_mask="m" fsuid=0 ouid=0 Nov 8 15:02:02 laptop kernel: [140570.817118] audit: type=1400 audit(1478613722.992:365): apparmor="ALLOWED" operation="file_mmap" profile="/usr/lib/dovecot/config" name="/usr/lib/x86_64-linux-gnu/ld-2.24.so" pid=7440 comm="config" requested_mask="m" denied_mask="m" fsuid=0 ouid=0 Nov 8 15:02:03 laptop kernel: [140570.825324] audit: type=1400 audit(1478613723.004:366): apparmor="ALLOWED" operation="file_mmap" profile="/usr/lib/dovecot/auth" name="/usr/lib/x86_64-linux-gnu/ld-2.24.so" pid=7441 comm="auth" requested_mask="m" denied_mask="m" fsuid=0 ouid=0 -- System Information: Debian Release: stretch/sid APT prefers unstable APT policy: (990, 'unstable'), (500, 'stable') Architecture: amd64 (x86_64) Foreign Architectures: i386 Kernel: Linux 4.8.0-1-amd64 (SMP w/4 CPU cores) Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8) Shell: /bin/sh linked to /usr/bin/dash Init: systemd (via /run/systemd/system) Versions of packages apparmor-profiles depends on: ii apparmor 2.10.95-5 apparmor-profiles recommends no packages. apparmor-profiles suggests no packages. -- no debconf information
signature.asc
Description: PGP signature