Hi Jonathan, The following 2 patches allow to run charon to setuid/gid to a regular user. The patch for the stroke profile is to allow a different user (like root) to signal the charon daemon running as a regular user.
Let me know if you have any comments/suggestions about those patches. ** Patch added: "allow-user-priv-dropping-charon.patch" https://bugs.launchpad.net/ubuntu/+source/strongswan/+bug/1333655/+attachment/4318846/+files/allow-user-priv-dropping-charon.patch -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1333655 Title: strongSwan AppArmor profile does not allow user priv dropping To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/strongswan/+bug/1333655/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs