Re: [NZOSS-Openchat] Qubes-OS
Jim Cheetham <[email protected]>
| Newsgroups | gmane.org.user-groups.linux.dunedin.general |
|---|---|
| Message-ID | <CA+2knqsziq=U2dA1APpzWzLAwxBFDe_H-PNW2+Ey_n+diBjB2A@mail.gmail.com> |
On Wed, Jan 22, 2014 at 9:28 AM, Thomi Richards <[email protected]> wrote: > Speaking of AppArmour, one of the cool things we're doing on Ubuntu Touch > (the phone OS) is making every application run inside an AppArmour > container. I *think* similar work is happening on the desktop side, but TBH > I'm not on the right mailing lists to give you any more accurate > information. It seems like a pretty fundamental shift towards a much better > application security model than anything I've seen previously on Linux (any > distribution). This seems to be the way that both Android and iOS work, and is also the primary reason why there are no effective anti-virus products on those platforms - there is no way that the AV apps can get permission to halt/erase/uninstall malware apps. Best they can do is to suggest to the end-user that they manually uninstall the malware ... Hopefully Ubuntu Touch will be able to grant enhanced permissions to some applications somehow ... :-) _______________________________________________ DunLUG mailing list [email protected] http://lists.ethernal.org/listinfo/dunlug DunLUG Wiki - http://dunlug.kallisti.net.nz/