Why is AppArmor considered useless?

Both AppArmor and SELinux are MACs but they are only as useful as they are configured.

In the case of AA, very few programs are confined by the default enabled/included policies on eg. Ubuntu.

Therefore they don’t offer much protection at all.

Please run aastatus like I mentioned and it’ll tell you which programs are confined.

1 Like