[pkg-apparmor] aa-unconfined shows tor as being unconfined, aa-status says different

intrigeri intrigeri at debian.org
Mon Feb 2 09:19:19 UTC 2015


Hi,

u wrote (01 Feb 2015 22:11:27 GMT) :
> while playing around with `aa-unconfined` i saw that /usr/bin/tor is
> marked as not being confined.

> `tor` comes with an apparmor profile which is called "system_tor" and
> lives in /etc/apparmor.d.

> `aa-unconfined` seems to ignore this, but `aa-status` tells me that the
> `system_tor` profile is well active.

> Do I need to worry about the tor process not being confined?

I actually have no idea. I had never heard of aa-unconfined yet.
One of these tools has a bug. What do upstream folks think about it?

Cheers,
-- 
intrigeri



More information about the pkg-apparmor-team mailing list