Sample Header Ad - 728x90

unprivileged_userns_apparmor_policy - what does it do?

2 votes
1 answer
768 views
I am developing some AppArmor profiles, and came across the kernel flag unprivileged_userns_apparmor_policy, but I cannot find any documentation about it. Does anyone know what it does? I wonder if it might be helpful to me because I am writing AppArmor policies for apps that can use unprivileged user namespaces and I don't want those apps to be able to use a mount namespace to get around the AppArmor profile's file permission restrictions.
Asked by schmeg (31 rep)
Mar 7, 2023, 10:00 PM
Last activity: Jan 20, 2025, 11:33 AM