Hi Christian, We have successfully setup Full System Policy. You're right, we're looking for full system confinement with profiles for specific programs, and a default profile for everything else. I'm not sure if this is directly possible since we don't have 'pcx' transitions at the moment.
Thank you for the correction. This confirms the fact that stacking cannot be used to achieve what we require.
-- AppArmor mailing list [email protected] Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/apparmor
