
AppArmor
A Mandatory Access Control (MAC) system which is a kernel (LSM) enhancement to confine programs to a limited set of resources.
- Free • Open Source
- Linux
What is AppArmor?
AppArmor is an effective and easy-to-use Linux application security system. AppArmor proactively protects the operating system and applications from external or internal threats, even zero-day attacks, by enforcing good behavior and preventing even unknown application flaws from being exploited. AppArmor security policies completely define what system resources individual applications can access, and with what privileges. A number of default policies are included with AppArmor, and using a combination of advanced static analysis and learning-based tools, AppArmor policies for even very complex applications can be deployed successfully in a matter of hours.
AppArmor Screenshots
AppArmor Features
AppArmor information
Supported Languages
- English
Said about AppArmor as an alternative
AppArmor is easier to administer, but isn't a 1:1 replacement. MAC and RBAC are not synonymous. Additionally, AppArmor does not include security information for each data object based on what it is, but is based on directory structures or where things are. They are different approaches to a similar problem with different use cases.
Tags
- mandatory-access-control
- Linux
Comments and Reviews Post a comment/review