summarylogtreecommitdiffstats
path: root/apparmor.service
diff options
context:
space:
mode:
Diffstat (limited to 'apparmor.service')
-rw-r--r--apparmor.service25
1 files changed, 0 insertions, 25 deletions
diff --git a/apparmor.service b/apparmor.service
deleted file mode 100644
index 2490d1bb84bd..000000000000
--- a/apparmor.service
+++ /dev/null
@@ -1,25 +0,0 @@
-[Unit]
-Description=Load AppArmor profiles
-DefaultDependencies=no
-Before=sysinit.target
-After=systemd-journald-audit.socket
-After=var.mount var-lib.mount
-ConditionSecurity=apparmor
-
-[Service]
-Type=oneshot
-ExecStart=/usr/lib/apparmor/apparmor.systemd reload
-ExecReload=/usr/lib/apparmor/apparmor.systemd reload
-
-# systemd maps 'restart' to 'stop; start' which means removing AppArmor confinement
-# from running processes (and not being able to re-apply it later).
-# Upstream systemd developers refused to implement an option that allows overriding
-# this behaviour, therefore we have to make ExecStop a no-op to error out on the
-# safe side.
-#
-# If you really want to unload all AppArmor profiles, run aa-teardown
-ExecStop=/usr/bin/true
-RemainAfterExit=yes
-
-[Install]
-WantedBy=multi-user.target