AppArmor enabled by default in templates

48 views
Skip to first unread message

Andrzej Andrzej

unread,
Jul 8, 2018, 11:01:53 AM7/8/18
to qubes...@googlegroups.com
I do not understand why AppArmor is not enabled by default in Qubes for each template. You could enable it by default for each template to increase security. In systems such as Whonix, from what I remember it is enabled by default. If there is no strong justification for this, then you can enable this functionality. I suspect that this may be due to the fact that AppArmor profiles may cause little confusion and complications.

awokd

unread,
Jul 8, 2018, 1:12:20 PM7/8/18
to Andrzej Andrzej, qubes...@googlegroups.com
Search the Qubes mailing lists for discussions about VM hardening. Short
version is https://www.qubes-os.org/security/goals/.



Reply all
Reply to author
Forward
0 new messages