[Touch-packages] [Bug 2064096] Re: Services fail to start in noble deployed with TPM+FDE

2024-05-02 Thread Andreas Hasenack
> /usr/lib/systemd/systemd --switched-root --system --deserialize=40 splash Ok, --switched-root is there in PID 1, it's something I was looking to confirm. -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to apparmor in Ubuntu.

[Touch-packages] [Bug 2064096] Re: Services fail to start in noble deployed with TPM+FDE

2024-05-02 Thread James Paton-Smith
Answering questions from #2064088 Q: Can you also show the output of: ps fauxwZ A: See attached ** Attachment added: "ps" https://bugs.launchpad.net/ubuntu/+source/rsyslog/+bug/2064096/+attachment/5774011/+files/ps -- You received this bug notification because you are a member of Ubuntu

[Touch-packages] [Bug 2064096] Re: Services fail to start in noble deployed with TPM+FDE

2024-05-02 Thread James Paton-Smith
Answering questions from #2064088 Q: Did you install this fde/tpm setup using the ubuntu desktop noble installer? Or was hit some manual setup? A: The install was performed using autoinstall with the desktop ISO. Attached is a copy of the autoinstall yaml ** Attachment added: "autoinstall

[Touch-packages] [Bug 2064096] Re: Services fail to start in noble deployed with TPM+FDE

2024-05-01 Thread Christian Ehrhardt 
Thanks for the great debug work so far already, I think it is "apparmor or kernel" enough that we should add those packages and subscribe a few folks we know dealing with those details - I'd start with jjohansen as he'd be the best to map us to either knowledge or a known case. ** Also affects:

[Touch-packages] [Bug 2064096] Re: Services fail to start in noble deployed with TPM+FDE

2024-05-01 Thread Andreas Hasenack
** Description changed: + What's known so far: + - 24.04 desktop deployed with TPM+FDE shows this bug + - services confined with apparmor that need to access something in /run/systemd (like the notify socket) fail to do so, even if the apparmor profile is in complain mode + - only after running