summaryrefslogtreecommitdiff
path: root/server/apparmor/apparmor_common.go
diff options
context:
space:
mode:
authorMatthew Heon <matthew.heon@gmail.com>2017-11-01 11:24:59 -0400
committerMatthew Heon <matthew.heon@gmail.com>2017-11-01 11:24:59 -0400
commita031b83a09a8628435317a03f199cdc18b78262f (patch)
treebc017a96769ce6de33745b8b0b1304ccf38e9df0 /server/apparmor/apparmor_common.go
parent2b74391cd5281f6fdf391ff8ad50fd1490f6bf89 (diff)
downloadpodman-a031b83a09a8628435317a03f199cdc18b78262f.tar.gz
podman-a031b83a09a8628435317a03f199cdc18b78262f.tar.bz2
podman-a031b83a09a8628435317a03f199cdc18b78262f.zip
Initial checkin from CRI-O repo
Signed-off-by: Matthew Heon <matthew.heon@gmail.com>
Diffstat (limited to 'server/apparmor/apparmor_common.go')
-rw-r--r--server/apparmor/apparmor_common.go14
1 files changed, 14 insertions, 0 deletions
diff --git a/server/apparmor/apparmor_common.go b/server/apparmor/apparmor_common.go
new file mode 100644
index 000000000..6366a66e6
--- /dev/null
+++ b/server/apparmor/apparmor_common.go
@@ -0,0 +1,14 @@
+package apparmor
+
+const (
+ // DefaultApparmorProfile is the name of default apparmor profile name.
+ DefaultApparmorProfile = "crio-default"
+
+ // ContainerAnnotationKeyPrefix is the prefix to an annotation key specifying a container profile.
+ ContainerAnnotationKeyPrefix = "container.apparmor.security.beta.kubernetes.io/"
+
+ // ProfileRuntimeDefault is he profile specifying the runtime default.
+ ProfileRuntimeDefault = "runtime/default"
+ // ProfileNamePrefix is the prefix for specifying profiles loaded on the node.
+ ProfileNamePrefix = "localhost/"
+)