Extending AppArmor Mediation into the Userspace


John Johansen


This presentation will cover the work to extend AppArmor support into the userspace, providing better mediation for the Desktop and Ubuntu phone. It will cover how AppArmor policy can be extended for user based services, and the various options a service has for leveraging AppArmor support. A set of examples services that have been extended with AppArmor support (dbus, upstart, on-line accounts, content picking, ...), will be covered with design decisions and analysis around each.