[pkg-apparmor] Bug#768415: apparmor-profiles-extra: Migrate ntpd profile and tunables file to apparmor-profiles

intrigeri intrigeri at debian.org
Wed Aug 12 13:16:05 UTC 2015


Control: user pkg-apparmor-team at lists.alioth.debian.org
Control: usertag -1 + merge-to-upstream
Control: severity -1 wishlist

> As of AppArmor 2.9, upstream now ships usr.sbin.ntpd and
> tunables/ntpd. We don't install them as part of apparmor-profiles yet,
> and given they were added to apparmor-profiles-extra, we have to
> migrate them.

Actually, usr.sbin.ntpd has been in the upstream VCS for years.

In practice, mostly OpenSUSE folks are maintaining it there, while
Ubuntu is maintaining its own, that's shipped in the ntp package there
(and in apparmor-profiles-extra in Debian).

The current diffstat between these two versions is:

 usr.sbin.ntpd |   81 +++++++++++++++++++++++++---------------------------------
 1 file changed, 35 insertions(+), 46 deletions(-)

So, next step is actually *not* to switch to upstream's profile (via
apparmor-profiles), but rather to merge these two diverging profiles
upstream. Then only, we can switch to upstream's one and deal with the
conffile migrating between packages.

Meta: I'm personally not very interested in ntpd (I'm more into
systemd-timesyncd these days), so it's very unlikely that I work on
this again.

Cheers,
--
intrigeri



More information about the pkg-apparmor-team mailing list