content icon indicating copy to clipboard operation
content copied to clipboard

Check whether all the profiles already parsed and loaded into the kernel

Open alanmcanonical opened this issue 4 months ago • 3 comments

Description:

  • Check whether all the profiles already parsed and loaded into the kernel

Rationale:

  • Make sure the apparmor is aware of all the profiles under /etc/apparmor.d/ folder without actually load them
  • The automatic test is expected to fail for the "processes are unconfined" check logic since some processes already confined by existing profiles which will be replaced by remediation will need reboot to take effects

alanmcanonical avatar Oct 16 '24 09:10 alanmcanonical