AppArmor Flashcards
aa-logprof
analyze logs to generate profiles for systemic profiling
aa-autodep
create approximate profiles for programs
aa-complain
enters complain or learning mode
aa-enforce
enters enforce mode
aa-genprof
generating profiles for applications for stand-alone profiling
systemic profiling
A profiling method that makes changes to applications across the whole system and makes profiling decisions from this system-wide perspective
stand-alone profiling
A profiling method that makes changes only to one application and is informed by analysis of only that one application
What does AppArmor mean by ‘profile?’
A profile is a text file that defines restrictions to an application
What are the two modes that an AppArmor profile may be loaded in?
Enforcement
Complain
How to activate learning mode?
aa-complain
What is the default directory for AppArmor profiles?
/etc/apparmor.d