Skip to content

Add initial sections in AppArmor development guide

Elvstam Cantner Andreas requested to merge ael1lud into dev/apparmor-guideline

Added new sections on the topics below, to the existing file content/guides/apparmor.md:

  • Profile Introduction
    • Profile Modes
    • System Logs
  • Profile Development
    • Manually Write The Profile
    • Tool Aided Profile Development
    • Developing Common Parts For Multiple Profiles
  • Capabilities
    • Short intro to Linux capabilities
    • Short summary of the five sets available
    • Explanation of capabilities + AppArmor criteria to be met
    • 2 example profiles for CAP_CHOWN and mount + CAP_SYS_ADMIN

This content will later on need to be reorganized within the file apparmor.md to create a better flow but to not create too large merge request the new content is simply appended at the end in this merge request.

Merge request reports

Loading