[Apparmor-general] security= kernel cmdline

Marcus Meissner meissner at suse.de
Fri Oct 31 07:44:35 MDT 2008


On Fri, Oct 31, 2008 at 02:42:47PM +0100, Arkadiusz Miskiewicz wrote:
> 
> Recent kernels support security= parameter for "Choose a security module to 
> enable at boot."
> 
> Right now apparmor doesn't obey it it seems. I used "security=capability" 
> while apparmor was still activated:
> 
> # dmesg|grep -i appar
> [    0.010018] AppArmor: AppArmor initialized
> [    1.534344] AppArmor: AppArmor Filesystem Enabled
> 
> That was on 2.6.27.4 kernel. It would be nice to change apparmor to obey 
> security= option.

There is no capability module anymore I think.

Ciao, Marcus


More information about the Apparmor-general mailing list