Bonjour,
Dans Grub, j’avais déjà noté ceci:
GRUB_CMDLINE_LINUX=apparmor="1 security=apparmor"
J’ai alors rajouté ce que tu m’as dit:
GRUB_CMDLINE_LINUX_DEFAULT="quiet apparmor=1 security=apparmor"
systemctl status apparmor
● apparmor.service - LSB: AppArmor initialization
Loaded: loaded (/etc/init.d/apparmor)
Active: active (exited) since jeu 2016-09-29 12:42:00 CEST; 1min 17s ago
Process: 217 ExecStart=/etc/init.d/apparmor start (code=exited, status=0/SUCCESS)
sudo aa-status
apparmor module is loaded.
61 profiles are loaded.
30 profiles are in enforce mode.
/usr/bin/evince
/usr/bin/evince-previewer
/usr/bin/evince-previewer//sanitized_helper
/usr/bin/evince-thumbnailer
/usr/bin/evince-thumbnailer//sanitized_helper
/usr/bin/evince//sanitized_helper
/usr/bin/freshclam
/usr/bin/irssi
/usr/bin/pidgin
/usr/bin/pidgin//launchpad_integration
/usr/bin/pidgin//sanitized_helper
/usr/bin/totem
/usr/bin/totem-audio-preview
/usr/bin/totem-video-thumbnailer
/usr/lib/chromium-browser/chromium-browser
/usr/lib/chromium-browser/chromium-browser//browser_java
/usr/lib/chromium-browser/chromium-browser//browser_openjdk
/usr/lib/chromium-browser/chromium-browser//chromium_browser_sandbox
/usr/lib/chromium-browser/chromium-browser//lsb_release
/usr/lib/chromium-browser/chromium-browser//sanitized_helper
/usr/lib/chromium-browser/chromium-browser//xdgsettings
/usr/lib/cups/backend/cups-pdf
/usr/sbin/apt-cacher-ng
/usr/sbin/clamd
/usr/sbin/cups-browsed
/usr/sbin/cupsd
/usr/sbin/cupsd//third_party
/usr/sbin/ntpd
/usr/sbin/tcpdump
gst_plugin_scanner
31 profiles are in complain mode.
/sbin/klogd
/sbin/syslog-ng
/sbin/syslogd
/usr/lib/dovecot/anvil
/usr/lib/dovecot/auth
/usr/lib/dovecot/config
/usr/lib/dovecot/deliver
/usr/lib/dovecot/dict
/usr/lib/dovecot/dovecot-auth
/usr/lib/dovecot/dovecot-lda
/usr/lib/dovecot/imap
/usr/lib/dovecot/imap-login
/usr/lib/dovecot/lmtp
/usr/lib/dovecot/log
/usr/lib/dovecot/managesieve
/usr/lib/dovecot/managesieve-login
/usr/lib/dovecot/pop3
/usr/lib/dovecot/pop3-login
/usr/lib/dovecot/ssl-params
/usr/sbin/avahi-daemon
/usr/sbin/dnsmasq
/usr/sbin/dovecot
/usr/sbin/identd
/usr/sbin/mdnsd
/usr/sbin/nmbd
/usr/sbin/nscd
/usr/sbin/smbd
/usr/sbin/smbldap-useradd
/usr/sbin/smbldap-useradd///etc/init.d/nscd
/usr/{sbin/traceroute,bin/traceroute.db}
/{usr/,}bin/ping
6 processes have profiles defined.
4 processes are in enforce mode.
/usr/bin/freshclam (498)
/usr/sbin/clamd (535)
/usr/sbin/cups-browsed (532)
/usr/sbin/cupsd (531)
2 processes are in complain mode.
/usr/sbin/avahi-daemon (512)
/usr/sbin/avahi-daemon (520)
0 processes are unconfined but have a profile defined.
sudo aa-enforce /etc/apparmor.d/usr*
Setting /etc/apparmor.d/usr.bin.chromium-browser to enforce mode.
Traceback (most recent call last):
File "/usr/sbin/aa-enforce", line 30, in <module>
tool.cmd_enforce()
File "/usr/lib/python3/dist-packages/apparmor/tools.py", line 153, in cmd_enforce
apparmor.read_profiles()
File "/usr/lib/python3/dist-packages/apparmor/aa.py", line 2572, in read_profiles
read_profile(profile_dir + '/' + file, True)
File "/usr/lib/python3/dist-packages/apparmor/aa.py", line 2598, in read_profile
profile_data = parse_profile_data(data, file, 0)
File "/usr/lib/python3/dist-packages/apparmor/aa.py", line 2853, in parse_profile_data
store_list_var(filelist[file]['lvar'], list_var, value, var_operation, file)
File "/usr/lib/python3/dist-packages/apparmor/aa.py", line 3289, in store_list_var
raise AppArmorException(_('Redefining existing variable %(variable)s: %(value)s in %(file)s') % { 'variable': list_var, 'value': value, 'file': filename })
apparmor.common.AppArmorException: 'Redefining existing variable @{APT_CACHE_DIR}: /var/cache/apt-cacher-ng in /etc/apparmor.d/usr.sbin.apt-cacher-ng
Ps: la commande “sudo” ne fonctionne jamais. Après avoir tapé mon mon de passe, elle me retourne toujours qu’il est erroné. Je dois faire au préalable su pour que celle-ci fonctionne.
Merci.