On Tue, Nov 19, 2019 at 04:56:55PM +0100, Oguz Bektas wrote:
> hi,
> 
> this breaks mounting with mountopts. (hotplug and normal mount)
> 
> reproduce:
> - install new kernel
> - make a CT
> - run it
> - try to hotplug a mp with any mountoption (ro, noatime, nosuid, noexec,
> nodev)

I was a bit confused by the mountoptions there, as the actual culprit
seems to be the chosen staging directory in /run. The lxc-start apparmor
profile only explicitly allows staging mount points in /var/lib/lxc, but
the path restriction isn't there for all mounts... (apparmor mount
rules, *sigh*...)

_______________________________________________
pve-devel mailing list
pve-devel@pve.proxmox.com
https://pve.proxmox.com/cgi-bin/mailman/listinfo/pve-devel

Reply via email to