On Tue, Nov 19, 2019 at 04:56:55PM +0100, Oguz Bektas wrote: > hi, > > this breaks mounting with mountopts. (hotplug and normal mount) > > reproduce: > - install new kernel > - make a CT > - run it > - try to hotplug a mp with any mountoption (ro, noatime, nosuid, noexec, > nodev)
I was a bit confused by the mountoptions there, as the actual culprit seems to be the chosen staging directory in /run. The lxc-start apparmor profile only explicitly allows staging mount points in /var/lib/lxc, but the path restriction isn't there for all mounts... (apparmor mount rules, *sigh*...) _______________________________________________ pve-devel mailing list pve-devel@pve.proxmox.com https://pve.proxmox.com/cgi-bin/mailman/listinfo/pve-devel