Делаю:
user=test {
deny /tmp rwm,
}
root@ne-vlezay80:/home/ne-vlezay80# aa-enforce user.test.conf
ERROR: Syntax Error: Unknown line found in file /etc/apparmor.d/user.test.conf line 2:
user=test /tmp/* r,
Делая по инструкции: https://gitlab.com/apparmor/apparmor/wikis/Userconditional