Anders,

in the Automotive Grade Linux (AGL) we are using Smack + Cynara and that has required quite a bit of side work to make it operational.
 - http://docs.automotivelinux.org/
I have been presenting AGL  Smack based security model in quite a few conferences over the world and not many people have come to me to talk about their "solution" working either on SE Linux or AppArmor. So far I have the impression that AGL is quite unique in its full integration of an LSM module in an embedded project.

 One of the member of Genivi Alliance (I believe it was Bosh with its product called at the time eCore) told (about 3 years ago) that they would put their security framework which was based on AppAmor, in the Open, but I have never eared about it since that time.

Initialisation and update/upgrade are where the LSM provides most of the pain. they rarely work out of the box once that LSM is active.
--
Dominig ar Foll
Senior Software Architect
Intel Open Source Technology Centre
Le 20/06/2017 à 15:19, Anders Montonen a écrit :
Hi,

Has anyone tried using AppArmor with Yocto? The recipe in the meta-security layer is broken, and when fixed so it actually builds, it turns out the installed init script relies on functions not found in Yocto's version of LSB.

Regards,
Anders 

-- 
_______________________________________________
yocto mailing list
[email protected]
https://lists.yoctoproject.org/listinfo/yocto

Reply via email to