Bug#947863: lxc: apparmor denied mount with unprivileged lxc

2020-07-17 Thread Harald Welte
I'm seeing this problem all the time when using a pretty default Debian buster host with Debian buster lxc containers. If you then use the standard Debian 'certbot' package inside the lxc container, it will fail to be executed every time: Host: [15500835.942037] audit: type=1400

Bug#947863: lxc: apparmor denied mount with unprivileged lxc

2020-01-01 Thread Johannes Schauer
Hi, Quoting Pierre-Elliott Bécue (2020-01-01 16:25:24) > I'm sorry but lxc unprivileged containers can't run with any apparmor > profile. You have to set this parameter to unconfined for your unprivileged > containers. Setting a default profile for unconfined containers is a hard > thing as only

Bug#947863: lxc: apparmor denied mount with unprivileged lxc

2020-01-01 Thread Pierre-Elliott Bécue
Control: tags -1 +wontfix Le mercredi 01 janvier 2020 à 02:05:37+0100, Johannes 'josch' Schauer a écrit : > Package: lxc > Version: 1:3.1.0+really3.0.4-2 > Severity: normal > > Hi, > > when booting into a system started with unprivileged lxc, I'm getting > the following errors: > > [

Bug#947863: lxc: apparmor denied mount with unprivileged lxc

2019-12-31 Thread Johannes 'josch' Schauer
Package: lxc Version: 1:3.1.0+really3.0.4-2 Severity: normal Hi, when booting into a system started with unprivileged lxc, I'm getting the following errors: [5.818300] audit: type=1400 audit(1577840118.455:15): apparmor="DENIED" operation="mount" info="failed flags match" error=-13