Linux AppArmor
Contents
AppArmor
AppArmor
Linux kernel security module
Status
|
|
|
|
Check Enabled
|
|
|
|
Check Profiles
|
|
|
|
AppArmor Profile
apparmor-deny-write
|
|
apparmor-deny-proc-write
|
|
apparmor-deny-remount-root
|
|
AppArmor Status
|
|
|
|
AppArmor Modes
Mode | Description |
---|---|
enforce | Blocks access to disallowed resources |
complain | Only reports violations |
unconfined | Don’t block access to resources |
Creating AppArmor Profiles
~/add_data.sh
|
|
|
|
|
|
|
|
|
|
Install apparmor-utils
|
|
Profile Generate
|
|
Default AppArmor Profiles Directory
|
|
Apply Profile
|
|