24.10 user here. Counting from current boot only (less than three hours ago), I already have more than 6k useless messages like this in the journal :
audit: type=1400 audit(1736012989.876:317033): apparmor="ALLOWED" operation="file_perm" class="file" profile="transmission-gtk" name=<redacted> pid=11838 comm="transmission-gt" requested_mask="r" denied_mask="r" fsuid=1001 ouid=1001
Considering I’m a very modest user of Transmission, I guess it must get very heavy on active Transmission users’ disk space, easily counting in the hundreds of thousands, if not millions.
I’ve set the transmission-gtk
profile to default_allow
, which seems to get rid of the problem, but makes it somehow enforced too, i.e. explicit deny rules will be applied, so I will probably set it back to complain
, but with an “allow all” rule… or maybe trash the whole shebang, which looks like a very sexy option at the time being.
However, correcting a bad profile would be better. Does anyone know how I can explicitly allow those file_perm
operations ?