Public bug reported:

I was trying to run docker in a nested container.  docker wants to
remount a bind-mounted dir as ro.  Audit log showed this failed.  I
first tried to add more specific rules, but when those did not work i
tried just

remount,

in the policy.  Still the mount was denied.  Finally when I added
'mount,', it worked.

Ideally I would be able to say

  remount options=(ro,bind) -> /var/lib/docker/**/,

** Affects: apparmor (Ubuntu)
     Importance: Undecided
         Status: New

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1272028

Title:
  remount, not honored

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/apparmor/+bug/1272028/+subscriptions

-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to