[apparmor] Apparmor : wild cards/CPU spike

Murali Selvaraj murali.selvaraj2003 at gmail.com
Thu May 5 18:34:46 UTC 2022


Hi All,

I have enabled Apparmor in my embedded system running in 4.9 Kernel and 4
processes are running in enforce mode.

I have an entry in all four profiles ( */tmp/** rw*).  Do you think it will
cause the CPU spike?
If we have multiple wild card entries in the profile, will it really cause
the CPU spike.

I compared profiles in enforce vs disable; I could see the overall CPU
usage around 1% difference.
Do we have any CPU threshold impact as expected by enabling Apparmor?

Please share your suggestions.

Thanks
Murali.S
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.ubuntu.com/archives/apparmor/attachments/20220505/53308cb9/attachment.html>


More information about the AppArmor mailing list