Merge pull request #233850 from helsinki-systems/upd/apparmor

apparmor: 3.1.3 -> 3.1.4

ajs124 957db96d 946580d0

Changed files
+10 -4
nixos
tests
pkgs
os-specific
linux
apparmor
+8 -2
nixos/tests/apparmor.nix
···
-
import ./make-test-python.nix ({ pkgs, ... } : {
+
import ./make-test-python.nix ({ pkgs, lib, ... } : {
name = "apparmor";
meta.maintainers = with lib.maintainers; [ julm ];
···
# 4. Using `diff` against the expected output.
with subtest("apparmorRulesFromClosure"):
machine.succeed(
-
"${pkgs.diffutils}/bin/diff ${pkgs.writeText "expected.rules" ''
+
"${pkgs.diffutils}/bin/diff -u ${pkgs.writeText "expected.rules" ''
mr ${pkgs.bash}/lib/**.so*,
r ${pkgs.bash},
r ${pkgs.bash}/etc/**,
···
r ${pkgs.libunistring}/lib/**,
r ${pkgs.libunistring}/share/**,
x ${pkgs.libunistring}/foo/**,
+
mr ${pkgs.glibc.libgcc}/lib/**.so*,
+
r ${pkgs.glibc.libgcc},
+
r ${pkgs.glibc.libgcc}/etc/**,
+
r ${pkgs.glibc.libgcc}/lib/**,
+
r ${pkgs.glibc.libgcc}/share/**,
+
x ${pkgs.glibc.libgcc}/foo/**,
''} ${pkgs.runCommand "actual.rules" { preferLocalBuild = true; } ''
${pkgs.gnused}/bin/sed -e 's:^[^ ]* ${builtins.storeDir}/[^,/-]*-\([^/,]*\):\1 \0:' ${
pkgs.apparmorRulesFromClosure {
+2 -2
pkgs/os-specific/linux/apparmor/default.nix
···
}:
let
-
apparmor-version = "3.1.3";
+
apparmor-version = "3.1.4";
apparmor-meta = component: with lib; {
homepage = "https://apparmor.net/";
···
owner = "apparmor";
repo = "apparmor";
rev = "v${apparmor-version}";
-
hash = "sha256-6N1BStOXKui6BxSriWVoOkvyGRUJ4btsloHh/SsG/JE=";
+
hash = "sha256-YWPdIUd+2x74tqiW+YX8NKh3jxSKhD+5zdiDMjhPzpE=";
};
aa-teardown = writeShellScript "aa-teardown" ''