[pkg-apparmor] A Proposal for Managing and Enforcing Permissions for Applications (GSoC'18)

intrigeri intrigeri at debian.org
Tue Mar 27 08:55:00 UTC 2018


Hi,

Mert Bora Alper:
> For GSoC 2018, I am planning to propose an *opinionated* security
> solution for desktop users to manage "permissions" for
> applications/programs on their system, and I am currently looking for
> feedback on my idea, and a mentor for my project.

Unfortunately I won't have time to provide detailed feedback about
this idea in a timely manner, let alone to mentor this project.

Food for thought for you and anyone who has more time available for
this:

 - How does this relate to the "security by designation" concept and
   in particular to the implementation thereof we have on Linux
   (Portals)?

 - For the networking part, how does this relate to the 
   Subgraph Application Firewall
   (https://github.com/subgraph/fw-daemon)?

 - How does this relate to AppArmor mediation of D-Bus? (not in Linux
   mainline yet)

 - What subset of this idea do you think would fit into a GSoC
   project? In other words, what would be the concrete deliverables
   expressed in terms of user stories?

Sorry I won't have time to follow-up on this, so don't feel compelled
to reply. This is really really merely food for thought.

Cheers,
-- 
intrigeri



More information about the pkg-apparmor-team mailing list