Language Selection

English French German Italian Portuguese Spanish

Ubuntu gets AppArmor support

Filed under
Ubuntu

This is bad news. AppArmor is a weak design. IMHO it gives the users a false impression of security, while leaving too much open to bypass security.

But the biggest problem IMHO is that noone at Ubuntu seems to be working on their SELinux support. All I've seen is Ubuntu users breaking their system to a point where they didn't know how to fix it in the attempt to install their SELinux packages. The packages are mostly a 1:1 copy of the Debian packages I guess, but for example their new 'upstart' init-replacement likely isn't capable of actually starting a SELinux enabled system. Oh, and Debian didn't include the relevant package in any 'stable' release, Ubuntu had it in 'universe' since 'warty'. Right now, feisty will include the package, though it reportedly can't be installed.

In the example used in the blog, evince is maybe protected from exploits by bad PDF files, but if you do a cp /usr/bin/evince /tmp and run that copy, all the protection is gone. A symlink might already be sufficient! So AppArmor is heavily relying on the user playing nicely.

More Here.

More in Tux Machines

The Companies That Support Linux: Solace Systems

Solace Systems makes messaging middleware technology that moves data between distributed applications, devices and users to enable big data, cloud computing and the Internet of Things. Solace is expanding its involvement with The Linux Foundation through new corporate membership with The Linux Foundation and participation in the OpenMAMA project, a Linux Foundation Collaborative Project that provides a high-performance messaging API that interfaces with a variety of message-oriented middleware systems. Their technology is well-suited to the demands of OpenMAMA-based market data distribution systems used in banking and trading systems. Read more

AMD Publishes Open-Source Fiji GPU Support For AMDGPU

AMD has published the initial patches for supporting the "Fiji" GPU with HBM memory, a.k.a. the new Radeon R9 Fury graphics cards, by the open-source "AMDGPU" Linux driver stack. Alex Deucher today sent out the initial patches for adding Fiji support. "This patch set adds Fiji support to the open source amdgpu driver. The relevant mesa and ddx changes have also been sent out the their respective mailing lists." Read more

Linux Distro: Your Best Choice?

I believe one of the biggest advantages to running a Linux distro on your desktop is the number of choices available. Linux enthusiasts enjoy a wide range of desktop environments, file managers, terminals, GTK vs Qt software, and of course the distributions themselves. On the flip side of this coin, however, all of these choices can seem overwhelming. Regular folks that are trying to switch from other platforms to Linux are bombarded by conflicting advice and often it just leads to information overload. In this article, I’ll offer up some helpful guidelines to cut through the noise. I'm going to provide my tips on selecting the best distribution for you based on your needs, not the needs of others. Read more

Ubuntu drone puts robotics in the classroom

The company has created a DIY kit for building an Ubuntu drone. It is a Linux-based platform with Erle’s Ubuntu core running on the APM Autopilot hardware platform from 3DRobotics. It sells for €299. This is an all-in-one drone controller with point-and-click programming, command modes, failsafe programming and 3-axis camera control. It uses the Robot Operating System (ROS) framework for writing robot software. It is a collection of tools, libraries created by the Open Source Robotics Foundation. Read more