Skip to content
  • John Johansen's avatar
    disable downgrade and not enforced rule messages by default · c2b8a723
    John Johansen authored
    
    
    Currently the apparmor parser warns about rules that are not enforced or
    downgraded. This is a problem for distros that are not carrying the out of
    tree kernel patches, as most profile loads result in warnings.
    
    Change the behavior to not output a message unless a warn flag is passed.
    This patch adds 2 different warn flags
      --warn rule-downgraded    	 # warn if a rule is downgraded
      --warn rule-not-enforced	   # warn if a rule is not enforced at all
    
    If the warnings are desired by default the flags can be set in the
    parser.conf file.
    
    v2 of patch
    - update man page
    - add --warn to usage statement
    - make --quiet clear warn flags
    
    Signed-off-by: default avatarJohn Johansen <john.johansen@canonical.com>
    Acked-by: default avatarSteve Beattie <steve@nxnw.org>
    c2b8a723