I’m apparmor newbie.
I have run aa-genprof lighttpd weeks ago and put it into complain mode.
Today, after I switch it into enforce mode, on the output of aa-status, I see the captioned line. (Well, I ran aa-logprof several times in between. I always avoid doing something I don’t understand so I quit chickenly everytime.)
I have a couple of questions that are not mentioned in most of apparmor know-how googled.
- How can I confine that process? I only have its pid (which is not permanent by nature).
- If I run multiple times of aa-logprof, does the “learning” cumulated? or only the last run counts?
- Just notice there is a package apparmor-profiles-extra. Should I install it? Does it carry official profile for lighttpd, and will it overwrite the existing one if it does?
Thanks a lot for any help.