Skip to content

Allow privileged snaps to access sensitive protocols #201

@Saviq

Description

@Saviq

There are valid reasons to allow external snaps to e.g. capture screenshots, or provide input methods.

It's currently only possible to globally enable those protocols, opening up for attacks.

We need a way to allow privileged (e.g. through snap interface connections) snaps to access those, and for the device operator to decide.

Applying apparmor labels is what we always thought can be the mediation layer here.

Metadata

Metadata

Assignees

No one assigned

    Labels

    enhancementNew feature or requesttriagedTriage into JIRA to plan it in

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions