AppArmorProfiles

Differences between revisions 6 and 7
Revision 6 as of 2009-07-24 21:57:38
Size: 1798
Editor: c-76-105-212-198
Comment:
Revision 7 as of 2009-08-12 14:54:47
Size: 2382
Editor: pool-71-123-5-218
Comment: add upcoming AppArmor profiles for Karmic
Deletions are marked like this. Additions are marked like this.
Line 8: Line 8:
=== Enforcing Profiles in Main === === Supported Profiles in Main ===
Line 20: Line 20:
|| Evince || -- || -- || -- || -- || pending ||
|| NTP (ntpd)^1^ || -- || -- || -- || -- || pending ||
|| Firefox (firefox-3.5) || -- || -- || -- || -- || pending^2^ ||
|| Libvirt || -- || -- || -- || -- || pending ||

 0. A complain-mode only profile was provided in the ```apparmor-profiles``` package in Ubuntu 9.04 and earlier
 0. Will be disabled by default

AppArmor Profiles

AppArmor is installed and loaded by default starting with Ubuntu 7.10 (Gutsy). Some packages will install their own enforcing profiles, while additional profiles can be found in the package apparmor-profiles from the Universe repository.

Supported Profiles in Main

Source package/binary

7.10

8.04 LTS

8.10

9.04

9.10

Cups (cupsd)

yes

yes

yes

yes

yes

OpenLDAP (slapd)

--

yes

yes

yes

yes

MySQL (mysqld)

--

yes

yes

yes

yes

Bind (named)

--

yes

yes

yes

yes

ClamAV (clamd,freshclam)

--

--

yes

yes

yes

gdm-guest-session

--

--

yes

yes

yes

tcpdump

--

--

--

yes

yes

ISC Dhcpd (dhcpd3)

--

--

--

yes

yes

ISC Dhcp client (dhclient3)

--

--

--

yes

yes

Evince

--

--

--

--

pending

NTP (ntpd)1

--

--

--

--

pending

Firefox (firefox-3.5)

--

--

--

--

pending2

Libvirt

--

--

--

--

pending

  1. A complain-mode only profile was provided in the apparmor-profiles package in Ubuntu 9.04 and earlier

  2. Will be disabled by default

Filing Bugs

When filing bugs against an installed apparmor profile, please see: https://wiki.ubuntu.com/DebuggingApparmor


CategorySecurityTeam

SecurityTeam/KnowledgeBase/AppArmorProfiles (last edited 2020-10-26 01:49:03 by alexmurray)