Ensure apparmor is enabled in bootloader configurationID: oval:org.secpod.oval:def:68675 | Date: (C)2021-01-31 (M)2023-12-27 |
Class: COMPLIANCE | Family: unix |
Configure AppArmor to be enabled at boot time and verify that it has not been overwritten by the bootloader boot parameters. Rationale: AppArmor must be enabled at boot time in your bootloader configuration to ensure that the controls it provides are not overridden. Note: This recommendation is designed around the grub bootloader, if LILO or another bootloader is in use in your environment enact equivalent settings.