AppArmor
AppArmor: Open Source Application Security System for Linux
Prevent applications from accessing sensitive areas of the OS, restrict process capabilities, and take control with AppArmor's open source application security system.
What is AppArmor?
AppArmor is an open source application security system that restricts the capabilities of Linux processes. It works by applying security profiles to executables, limiting what files and system resources those processes can access.
Some key features of AppArmor include:
- Prevents compromised applications from gaining full control of a system
- Isolates applications from each other and sensitive parts of the OS
- Supports both monolithic and application-specific profiles
- Can be configured in both enforcement and complaint modes
- Integrates well with common services like Apache, MySQL, and Samba
AppArmor confines applications via dynamic system call interception rather than OS-level virtualization or chroot, allowing it to provide detailed control over app behavior while maintaining native execution speeds. It is included by default in many Linux distributions such as Ubuntu and is widely used for hardening production servers.
AppArmor Features
Features
- Mandatory access control
- Fine-grained control over file permissions
- Ability to restrict network access
- Integration with system policy
- Profiles to restrict programs
Pricing
- Open Source
Pros
Cons
Official Links
Reviews & Ratings
Login to ReviewThe Best AppArmor Alternatives
View all AppArmor alternatives with detailed comparison →
Top Security & Privacy and Access Control and other similar apps like AppArmor
Here are some alternatives to AppArmor:
Suggest an alternative ❐Firejail
SELinux
Vulture
CLIP OS
Grsecurity