AppArmor

E37339

AppArmor is a Linux kernel security module that confines programs to a limited set of resources using per-application security profiles to reduce the impact of vulnerabilities and attacks.

AI illustration

How this image was made

AI-generated illustration of AppArmor

This AI-generated illustration was produced by black-forest-labs/FLUX.2-dev (1024x1024) from a prompt written by openai/gpt-oss-120b from the entity's label + description.

Prompt

Generate an image of AppArmor (AppArmor is a Linux kernel security module that confines programs to a limited set of resources using per-application security profiles to reduce the impact of vulnerabilities and attacks.)

All labels observed (3)

Label Occurrences
AppArmor canonical 13
AppArmor profiles 1
AppArmor project 1

How this entity was disambiguated

Statements (70)

Predicate Object
instanceOf Linux security module ⓘ
kernel security module ⓘ
mandatory access control system ⓘ
advantage easier profile management ⓘ
per-application configuration ⓘ
comparedTo SELinux ⓘ
configurationFile /etc/apparmor/parser.conf ⓘ
controls capabilities ⓘ
execution of programs ⓘ
file system access ⓘ
mount operations ⓘ
network access ⓘ
ptrace permissions ⓘ
signal permissions ⓘ
designApproach path-based confinement ⓘ
developer Canonical Ltd. ⓘ
Immunix ⓘ
Novell ⓘ
SUSE ⓘ
distributionSupport Arch Linux ⓘ
Debian ⓘ
Fedora ⓘ
linked to: Fedora Linux

SUSE Linux Enterprise ⓘ
linked to: SUSE

Ubuntu ⓘ
openSUSE ⓘ
documentation https://gitlab.com/apparmor/apparmor/-/wikis/home ⓘ
feature capability rules ⓘ
complain mode ⓘ
dbus rules ⓘ
enforce mode ⓘ
file path rules ⓘ
hat subprofiles ⓘ
learning mode ⓘ
mount rules ⓘ
network rules ⓘ
profile abstractions ⓘ
profile inheritance ⓘ
profile stacking ⓘ
profile templates ⓘ
ptrace rules ⓘ
signal rules ⓘ
implements Linux Security Modules API ⓘ
introducedInMainlineKernelVersion 2.6.36 ⓘ
kernelInterface /sys/kernel/security/apparmor ⓘ
license GNU General Public License ⓘ
logSource kernel audit subsystem ⓘ
syslog ⓘ
operatingSystem Linux ⓘ
primaryGoal application confinement ⓘ
least privilege enforcement ⓘ
mitigation of software vulnerabilities ⓘ
profileDirectory /etc/apparmor.d ⓘ
securityModel mandatory access control ⓘ
path-based access control ⓘ
sourceCodeRepository https://gitlab.com/apparmor/apparmor ⓘ
supports confinement of containers ⓘ
confinement of desktop applications ⓘ
confinement of system services ⓘ
profile mediation for individual binaries ⓘ
usedBy Snap packages on Ubuntu ⓘ
usedFor reducing impact of application compromises ⓘ
restricting access to system resources ⓘ
userSpaceTool aa-complain ⓘ
aa-disable ⓘ
aa-enforce ⓘ
aa-genprof ⓘ
aa-logprof ⓘ
aa-status ⓘ
apparmor_parser ⓘ
uses per-application security profiles ⓘ

How these facts were elicited

Referenced by (15)

Full triples — surface form annotated when it differs from this entity's canonical label.

Linux → supportsSecurityFeature → AppArmor ⓘ
CRI-O → supports → AppArmor ⓘ
Immunix → technologyPrecursorOf → AppArmor ⓘ
aa-logprof → partOf → AppArmor ⓘ
aa-logprof → maintainedAsPartOf → AppArmor project ⓘ
linked to: AppArmor
LXC → usesKernelFeature → AppArmor ⓘ
GNU/Linux → supports → AppArmor ⓘ
Linux ecosystem → includes → AppArmor ⓘ
Ubuntu Core → securityModel → AppArmor profiles ⓘ
linked to: AppArmor
LSM API → usedBy → AppArmor ⓘ
Smack → comparedWith → AppArmor ⓘ
Yama → relatedTo → AppArmor ⓘ