AppArmor security profiles for Docker (Engine)
AppArmor security profiles for Docker
AppArmor (Application Armor) is a Linux security module that protects an operating system and its applications from security threats. To use it, a system administrator associates an AppArmor security profile with each program. Docker expects to find an AppArmor policy loaded and enforced.
Docker automatically generates and loads a default profile for containers named docker-default
. On Docker versions 1.13.0
and later, the Docker binary generates this profile in tmpfs
and then loads it into the kernel. On Docker versions earlier than 1.13.0
, this profile is generated in /etc/apparmor.d/docker
instead.
Note: This profile is used on containers, not on the Docker Daemon.
登录查看完整内容