October 8, 2026 | Prague, Czechia View More Details & Registration | Note: The schedule is subject to change. You must be registered for Linux Security Summit Europe 2026 to participate in the sessions. Please visit the event registration page to purchase a ticket.
Sign up or log in to add sessions to your schedule and sync them to your phone or calendar.
Different LSMs have different approaches to how they implement MAC policy. This session aims to present an analysis and comparison of Apparmor and SELinux approaches by transforming their policy into a common regular language. Using finite state analysis and transitive closure to find commonalities and differences between the different types of policy.
We will discuss the approach used for the analysis, its limitations and compromises made to be able to reach a common base. Looking at the difference in policy structure, the number of rules, types, where, and how they overlap and differ. Examining the different types of policies, in both a static and dynamic capacity.
John Johansen began working with open source software in the late 80s and began playing with Linux in 93. He completed a masters in mathematics at the University of Waterloo and the began working for Immunix doing compiler hardening, and then AppArmor. After Immunix was acquired by... Read More →
Georgia Garcia is a software engineer at Canonical and co-maintainer of the AppArmor project, specializing in Linux operating system security across both kernel space and userspace.