[pkg-apparmor] Bug#773346: reportbug should provide information about active LSM

intrigeri intrigeri at debian.org
Wed Dec 17 10:43:15 UTC 2014


Hi,

u wrote (17 Dec 2014 09:53:15 GMT) :
> Thus, reportbug should report in "System Information" if such an LSM is
> installed and active in the kernel boot options.

Implementation-wise, for AppArmor the following test should report
true if, and only if, the AppArmor LSM is enabled:

   test -d /sys/module/apparmor

(It tells nothing about whether the software against which a bug is
being reported is affected by AppArmor in any way, though, but that's
a very hard and, IMO, non-blocking problem.)

No idea how to do the same with SELinux.

Cheers,
-- 
intrigeri



More information about the pkg-apparmor-team mailing list