AppArmor: Let systemd-logind read more kernel APIs without complaints

Signed-off-by: Simon McVittie's avatarSimon McVittie <>
Reviewed-by: Frédéric Dalleau's avatarFrédéric Dalleau <>
......@@ -38,6 +38,7 @@
/etc/udev/udev.conf r,
/proc/@{pid}/* r,
/proc/cmdline r,
/proc/sys/kernel/pid_max r,
/proc/sys/kernel/random/boot_id r,
/run/systemd/journal/socket w,
/run/systemd/notify w,
......@@ -46,6 +47,11 @@
/run/systemd/users/{,*} rw,
/run/udev/** r,
/run/user/*/ w,
/sys/bus/ r,
/sys/class/ r,
/sys/class/drm/ r,
/sys/devices/**/uevent r,
/sys/devices/virtual/tty/** r,
/sys/firmware/efi/efivars/OsIndicationsSupported-* r,
/sys/fs/cgroup/** r,
