-
Notifications
You must be signed in to change notification settings - Fork 10
Open
Description
Q1
The whitelist collection tool (generate_mb_defstate, creat_runtime_policy) is implemented in Python and requires installation of Python and dependency packages during deployment, which is inconvenient to use. Do you have any suggestions? Using go or rust to re implement these two tools and compile them into independent binary is relatively convenient to use
Q2
Ubuntu system does not enable selinux by default. Using IMA to achieve custom measurement goals on Ubuntu may cause problems. If Ubuntu closes AppArmor and opens selinux, what are the security risks ?
thanks
Metadata
Metadata
Assignees
Labels
No labels