Minor correction to report, "It shows lxc-container-default as not loaded" means to say "It shows lxc-container-default as not loaded for the process" (the profile itself is loaded but not applied).
In Jessie the package versions are: lxc 1:1.0.6-6 amd64 apparmor 2.9.0-3 amd64 In the Ubuntu (LTS), the packages are these versions: lxc 1.0.7-0ubuntu0.1 amd64 apparmor 2.8.95~2430-0ubuntu5.1 amd64 I also stumbled onto this message, only after reporting this bug (search failed me): https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=750106#117 > According to John Goerzen's report upstream, lxc-start is confined, > but apparently the container is not. That might be a bug in our > apparmor package. John, may you please check if processes inside > the container are confined (e.g. the shell from which you're writing to > /proc/sys/fs/...)? -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org