Public bug reported:

Snapd currently checks for
/sys/kernel/security/apparmor/features/network. If that directory does
not exist, we get

$ sudo env SNAPD_DEBUG=1 systemctl restart snapd
$ sudo journalctl -u snapd.service -n 20  | cat
backends.go:70: AppArmor status: apparmor is enabled but some kernel features 
are missing: network

In the upstream kernel only
/sys/kernel/security/apparmor/features/network_v8 and
/sys/kernel/security/apparmor/features/network_v9 exist.

Installing snaps with --jailmode fails when using upstream or vendor
kernels. It would be helpful to rely on upstream Apparmor network
features instead.

Best regards

Heinrich

** Affects: snapd (Ubuntu)
     Importance: Undecided
         Status: New

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/2157684

Title:
  Failing check for apparmor network features

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/snapd/+bug/2157684/+subscriptions


-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to