allow untrusted_app_all self:perf_event { open read write kernel };