[Bug 1298611] Re: [FFe] apparmor signal and ptrace mediation

Jamie Strandboge jamie at ubuntu.com
Wed Apr 2 21:04:19 UTC 2014


Stéphane, all that is needed is to add the following to abstractions/lxc/container-base and abstractions/lxc/start-container:
  signal,
  ptrace,

Obviously, confinement could be more interesting, but like with dbus we
should err on the side of caution and just let these through. Adding
this rules gives us equivalent confinement to lxc on 13.10.

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to lxc in Ubuntu.
https://bugs.launchpad.net/bugs/1298611

Title:
  [FFe] apparmor signal and ptrace mediation

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/apparmor/+bug/1298611/+subscriptions



More information about the Ubuntu-server-bugs mailing list