From 3deb00bb0a91d724a1ffe0e4e19002f494fba8bf Mon Sep 17 00:00:00 2001 From: ImmortalPC Date: Fri, 13 Sep 2013 00:21:50 +0200 Subject: [PATCH] Add apparmor --- cheatsheets/apparmor | 16 ++++++++++++++++ 1 file changed, 16 insertions(+) create mode 100644 cheatsheets/apparmor diff --git a/cheatsheets/apparmor b/cheatsheets/apparmor new file mode 100644 index 0000000..d4a623d --- /dev/null +++ b/cheatsheets/apparmor @@ -0,0 +1,16 @@ +# To activate a profile: +sudo aa-enforce usr.bin.firefox +# OR +export _PROFILE_='usr.bin.firefox' sudo $(rm /etc/apparmor.d/disable/$_PROFILE_ ; cat /etc/apparmor.d/$_PROFILE_ | apparmor_parser -a ) + +# TO disable a profile: +sudo aa-disable usr.bin.firefox +# OR +export _PROFILE_='usr.bin.firefox' sudo $(ln -s /etc/apparmor.d/$_PROFILE_ /etc/apparmor.d/disable/ && apparmor_parser -R /etc/apparmor.d/$_PROFILE_) + +# To list profiles loaded: +sudo aa-status +# OR +sudo apparmor_status + +# List of profiles aviables: /etc/apparmor.d/