[apparmor] Minimal apparmor profile

Alex Coventry throwaway at MIT.EDU
Fri Dec 9 18:11:41 UTC 2011


Hi, does anyone have the minimal profile necessary to allow a
gcc-compiled hello-world program to run on ubuntu?  

Alternatively, is there a quick way to reload a single profile, without
restarting apparmor?  It would be pretty easy to figure the minimal
ruleset out by sucessively trimming entries from abstractions/base,
given that.

Also, is there an apparmor rule allowing the prctl syscall?

Best regards,
Alex



More information about the AppArmor mailing list