Can we allow root access to everyone... without compromising security?
This is the bold and thoughtful bet of Alexandre PUJOL, a system engineer at LINAGORA, whose work we have chosen to support in continuity with his contributions to open source. He is presenting his feedback today in Denver at the Open Source Summit North America.
His project? A "Play Machine": a VM where the user arrives directly... as root, without any classic Unix filters. The only safeguard? AppArmor, enabled in Full System Policies (FSP).
The objective is twofold:
Prove that AppArmor alone can ensure consistent security.
Show that in a modern system, Unix permissions are not everything.
In this machine, all processes are not only confined by AppArmor; no unmonitored process can execute, and you can truly test, break (a little), and learn.
Why is this important to us? Because this project explores the limits of the open-source model by combining transparency, collective learning, and real security. At LINAGORA, this is our DNA.
So, join us at 9:55 AM (Denver Time) for his conference:
"Lessons Learned While Making an AppArmor Play Machine,"
where he will share the concrete challenges: profile architecture, integration, testing, and... the joy of offering public root access.
Want to see what a "free but protected" machine looks like?