wahaha 4 Posted November 30, 2021 I am looking to enable apparmor in my tinker board 2s, and according to the documentation, i should include these lines into the kernel boot. apparmor=1 security=apparmor lsm=lockdown,yama,apparmor Would like to check where do i need to go to update the kernel parameters? I have tried loading it in /boot/cmdline.txt and separately in /boot/config.txt, sudo reboot the tinker board, but systemctl status apparmor still shows apparmor failing to start with: Condition check resulted in Load AppArmor profiles being skipped. how should i go about with this please? Share this post Link to post Share on other sites
tooz 47 Posted December 1, 2021 hello @wahaha, please use the attached boot.img and try if it works: https://www.asuswebstorage.com/navigate/a/#/s/B098644E422E494D8506E5FA25FD6C764 execute the commands below to update: sudo dd if=boot.img of=/dev/mmcblk0p4 status=progress && sync sudo reboot please add this line in /boot/cmdline.txt to enable apparmor: apparmor=1 security=apparmor the board has to be rebooted after modification: sudo reboot Share this post Link to post Share on other sites
wahaha 4 Posted December 1, 2021 (edited) @tooz Thanks for this, it works with this boot image now. Not sure if you are able to explain a bit further as to what the changes took place in the boot image? Edited December 1, 2021 by wahaha Share this post Link to post Share on other sites
tooz 47 Posted December 2, 2021 hello @wahaha, this patch is added to the boot.img provided: https://www.asuswebstorage.com/navigate/a/#/s/3CC2A30D765146908D2D7A8CC8BB99C84 Share this post Link to post Share on other sites
wahaha 4 Posted October 13, 2022 Hi tooz, i tired to get apparmor with the above method for the latest release of Tinker Board 2 Debian 10 V2.1.6,. but the board does not boot up after that.. any idea why? Share this post Link to post Share on other sites