[apparmor] AppArmor and /etc/

Vincas Dargis vindrg at gmail.com
Wed Jul 25 16:45:55 UTC 2018


On 7/25/18 4:26 PM, Jamie Strandboge wrote:
>> FTR, according to Christian [1], openSUSE uses /var/cache/apparmor/
>> for the profile cache and /usr/share/apparmor/cache/ for the
>> read-only/packaged version.
>>
>> [1] https://gitlab.com/apparmor/apparmor/merge_requests/134
>>
> As stated elsewhere, Ubuntu has used /var/cache/apparmor for non-system
> policy related to Ubuntu Touch and snapd. That said, Touch is gone and
> snapd prepends 'snap.' to all snapd policy and lets apparmor_parser
> manage the directory, so the fact that snapd specifies it for --cache-
> loc is not a vote against moving system policy there.

Sorry for off-topic, but Ubuntu Touch is kinda alive as UBPorts [0]. I actually use phone with 
Ubuntu Touch with some OTA updates from UBPorts project! They are currently finishing migration to 
16.04 base first, so any of these changes will be interesting only in far future anyways. Off-topic-out.

[0] https://ubports.com/



More information about the AppArmor mailing list