You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
(initially reported in #234 (comment))
We have a large number of applications installed in sd-svs-disp, and many of them have community maintained apparmor profiles (apparmor-utils, apparmor-profiles, apparmor-profiles-extra). This will ensure these applications will only access system functionality or files that are strictly required, when opening potentially malicious submission. This will provide further assurances and defense in depth.
While it would be nice-to-have in other VMs as well, I think the priority would be having these in sd-svs-disp vms.
The text was updated successfully, but these errors were encountered:
(initially reported in #234 (comment))
We have a large number of applications installed in sd-svs-disp, and many of them have community maintained apparmor profiles (
apparmor-utils
,apparmor-profiles
,apparmor-profiles-extra
). This will ensure these applications will only access system functionality or files that are strictly required, when opening potentially malicious submission. This will provide further assurances and defense in depth.While it would be nice-to-have in other VMs as well, I think the priority would be having these in sd-svs-disp vms.
The text was updated successfully, but these errors were encountered: