Description
Installs a broad collection of AppArmor profiles for confining applications and services. It helps administrators apply mandatory access-control policy so programs receive only the filesystem, network, and capability access their profiles allow.
Security profiles can improve containment but also break applications if policy is too strict or mismatched. Test in complain or controlled modes first, review denials, and keep a recovery path for login and service failures.