You cannot select more than 25 topics
Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
30 lines
1003 B
Plaintext
30 lines
1003 B
Plaintext
#include <tunables/global>
|
|
|
|
{{ launch_script }} {
|
|
#include <abstractions/base>
|
|
#include <abstractions/bash>
|
|
#include <abstractions/nameservice>
|
|
#include <abstractions/ubuntu-browsers.d/java>
|
|
#include <abstractions/user-tmp>
|
|
|
|
/etc/ssl/certs/** r,
|
|
/etc/timezone r,
|
|
/usr/bin/dash ix,
|
|
/usr/lib/jvm/java-{{ java_version }}-openjdk-{{ ansible_local.dpkg.architecture }}/bin/java mrix,
|
|
/usr/lib/jvm/java-{{ java_version }}-openjdk-{{ ansible_local.dpkg.architecture }}/lib/server/classes.jsa mr,
|
|
/usr/share/java/java-atk-wrapper.jar r,
|
|
{{ launch_script }} r,
|
|
/proc/sys/net/core/somaxconn r,
|
|
/proc/sys/net/ipv4/tcp_fastopen r,
|
|
owner /proc/@{pid}/cgroup rw,
|
|
owner /proc/@{pid}/coredump_filter rw,
|
|
/proc/@{pid}/net/if_inet6 r,
|
|
/proc/@{pid}/net/ipv6_route r,
|
|
owner /proc/@{pid}/mountinfo r,
|
|
owner /tmp/libnetty_transport_native_epoll_x86_*.so mrw,
|
|
owner {{ installation_directory }}/server.*.jar r,
|
|
owner {{ data_directory }}/ rw,
|
|
owner {{ data_directory }}/** rw,
|
|
|
|
}
|