[pkg-apparmor] Bug#760526: Enable AppArmor support (using libapparmor)

intrigeri intrigeri at debian.org
Tue Sep 9 00:14:30 UTC 2014


Hi,

Michael Biebl wrote (05 Sep 2014 00:16:43 GMT) :
> With AppArmor support enabled, services can make use of the
> AppArmorProfile= option [1].

This option is e.g. needed for the systemd unit file for Tor to be
on-par, functionality-wise, with the current initscript we have (a
shell wrapper dirty hack would be feasible, but I'd rather avoid doing
that when a much better way is available).

This specific usecase was actually one of the reasons why Michael
Scherer implemented the AppArmorProfile= option upstream initially.

So: yes, please. I've been waiting for it eagerly, and will submit
patches to the Tor upstream unit file as soon as Debian's systemd
supports this option.

> CCing Kees here, since he is the maintainer of apparmor.

... which is in the process of moving to team-maintenance (decided
in-person at DebConf with Kees), so Cc'ing the team :)

Cheers,
-- 
intrigeri



More information about the pkg-apparmor-team mailing list