AppArmor for Complete System - Including init, PID1, Systemd, Everything! - Full System MAC policy

This is now all in the developers repository. Qubes test results:

whonixcheck VM detection broken.

ERROR: Virtualizer /usr/lib/security-misc/permission-lockdown failed: caught signal 11 xen /usr/lib/security-misc/permission-lockdown failed: caught signal 11 unsupported by Whonix developers! Whonixcheck aborted! (qubes_detected: true)

host audit[4565]: AVC apparmor=“DENIED” operation=“file_mmap” profile=“/usr/lib/security-misc/permission-lockdown” name=“/usr/bin/bash” pid=4565 comm=“permission-lock” requested_mask=“r” denied_mask=“r” fsuid=0 ouid=0

1 Like