[Touch-packages] [Bug 1780227] Re: locking sockets broken due to missing AppArmor socket mediation patches

2018-07-30 Thread Wolfgang Bumiller
Can confirm that the patch seems to work on 4.15. No "denied" "file_lock" log-spam when starting ArchLinux containers anymore, and they seem to be behaving as expected again. -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to

[Touch-packages] [Bug 1575779] Re: hostnamectl fails under lxd unpriv container

2018-07-05 Thread Wolfgang Bumiller
For completeness here's a minimal test case not requiring systemd: /* # apparmor_parser -r /etc/apparmor.d/bug-profile # (tested without the flags here as well btw.) profile bug-profile flags=(attach_disconnected,mediate_deleted) { network, file, unix, } # gcc this.c # ./a.out lock = 2