From d5cd139804733ad65d2dc968a42103a299140e77 Mon Sep 17 00:00:00 2001 From: Ganga Ram Date: Tue, 10 Sep 2024 17:55:04 +0400 Subject: [PATCH] Enable Apparmor security in VMs - Chromium-vm - Business-vm Signed-off-by: Ganga Ram --- modules/reference/appvms/business.nix | 1 + modules/reference/appvms/chromium.nix | 1 + 2 files changed, 2 insertions(+) diff --git a/modules/reference/appvms/business.nix b/modules/reference/appvms/business.nix index 490871e1a..4164c68ec 100644 --- a/modules/reference/appvms/business.nix +++ b/modules/reference/appvms/business.nix @@ -113,6 +113,7 @@ in csdWrapper = "${pkgs.openconnect}/libexec/openconnect/hipreport.sh"; }; }; + security.apparmor.enable = true; }; # Set default PDF XDG handler diff --git a/modules/reference/appvms/chromium.nix b/modules/reference/appvms/chromium.nix index 06716717e..393240c70 100644 --- a/modules/reference/appvms/chromium.nix +++ b/modules/reference/appvms/chromium.nix @@ -69,6 +69,7 @@ in }; ghaf.reference.programs.chromium.enable = true; + ghaf.security.apparmor.enable = true; # Set default PDF XDG handler xdg.mime.defaultApplications."application/pdf" = "ghaf-pdf.desktop";