apparmor: allow setting any profile into the unconfined state
authorJohn Johansen <john.johansen@canonical.com>
Thu, 11 Jul 2013 04:12:43 +0000 (21:12 -0700)
committerJohn Johansen <john.johansen@canonical.com>
Wed, 14 Aug 2013 18:42:07 +0000 (11:42 -0700)
commit038165070aa55375d4bdd2f84b34a486feca63d6
tree327014e8b5120a0ccc66418159c72f769e9b174d
parent8651e1d6572bc2c061073f05fabcd7175789259d
apparmor: allow setting any profile into the unconfined state

Allow emulating the default profile behavior from boot, by allowing
loading of a profile in the unconfined state into a new NS.

Signed-off-by: John Johansen <john.johansen@canonical.com>
Acked-by: Seth Arnold <seth.arnold@canonical.com>
security/apparmor/domain.c
security/apparmor/include/policy.h
security/apparmor/include/policy_unpack.h
security/apparmor/policy.c
security/apparmor/policy_unpack.c