Hello:
On 23 Feb 2026 at 18:02, Alessandro Vesely via Dng wrote:
> ... answer 'No' to a question like "Do you want > AppArmor?"
Exactly.
More so, 'No' to the whole EVM (Linux Extended Verification Module)
shebang which does not seem to be possible to disable.
> ... after some dist-upgrades I still have it:
Indeed ...
The *gift* that keeps on giving.
> What seems to stay is setting ...
> GRUB_CMDLINE_LINUX="apparmor=0"
That is what I use.
Along with:
[code]
security=0 nmi_watchdog=0 tsc=nowatchdog
[/code]
The thing I am bothered about is that, while other "security*
services declare themselves disabled, apparmor and selinux do not,
which leads me to doubt, something there should not be an ounce of
here. (see my previous post)
Best,
A.