[apparmor] Apparmor profile enforce issue, when changing from root to non-root

Seth Arnold seth.arnold at canonical.com
Tue Sep 1 01:20:07 UTC 2020


On Mon, Aug 31, 2020 at 08:25:26PM -0400, swarna latha wrote:
> For non-root mode, tried to add the capabilities manually, all the 36
> capabilities it did not work. But if i add the capability, (which is to
> grant all capabilities, the last one highlighted below) the process starts.

What messages do you get in dmesg or audit logs when you run your service
without the 'capability,' line?

Thanks
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 488 bytes
Desc: not available
URL: <https://lists.ubuntu.com/archives/apparmor/attachments/20200901/cc269ffa/attachment.sig>


More information about the AppArmor mailing list