[Bug 1380519] [NEW] lxc-user-nic should run in its own apparmor profile

Serge Hallyn 1380519 at bugs.launchpad.net
Mon Oct 13 08:32:13 UTC 2014


Public bug reported:

The lxc-user-nic program is a setuid-root program to create veth nics
and hook them to the host bridge and unprivileged containers.  It should
run under a very tight apparmor profile.

(Make sure to test with ovs bridges as well, as its call-out to ovs-
vsctl may have unexpected requirements)

** Affects: lxc (Ubuntu)
     Importance: High
         Status: Triaged

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to lxc in Ubuntu.
https://bugs.launchpad.net/bugs/1380519

Title:
  lxc-user-nic should run in its own apparmor profile

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/lxc/+bug/1380519/+subscriptions



More information about the Ubuntu-server-bugs mailing list