apparmor.d/docs/index.md
Alexandre Pujol c0780edee1
docs: multiple english corrections.
Co-authored-by: Thomas LAURENT <thomas.laurent@ucdconnect.ie>
2023-01-31 21:13:35 +00:00

1.2 KiB

title
AppArmor.d

AppArmor.d

Full set of AppArmor profiles

!!! danger "Help Wanted"

This project is still in its early development. Help is very welcome; 
see [Development](development/)

AppArmor.d is a set of over 1400 AppArmor profiles whose aim is to confine most Linux based applications and processes.

Purpose

  • Confine all root processes such as all systemd tools, bluetooth, dbus, polkit, NetworkManager, OpenVPN, GDM, rtkit, colord
  • Confine all Desktop environments
  • Confine all user services such as Pipewire, Gvfsd, dbus, xdg, xwayland
  • Confine some "special" user applications: web browser, file browser...
  • Should not break a normal usage of the confined software

See the Concepts page for more detail on the architecture.

Goals

  • Target both desktops and servers
  • Support all distributions that support AppArmor:
    • Currently:
      • :material-arch: Archlinux
      • :material-ubuntu: Ubuntu 22.04
      • :material-debian: Debian 11
    • Not (yet) tested on openSUSE
  • Support all major desktop environments:
    • Currently only :material-gnome: Gnome
  • Fully tested (Work in progress)