[Bug 2071478] Re: Add sys_admin capability to apparmor profile by default
Lena Voytek
2071478 at bugs.launchpad.net
Wed Jul 17 14:58:27 UTC 2024
Removing mantic - EOL
** Changed in: swtpm (Ubuntu Mantic)
Status: In Progress => Won't Fix
--
You received this bug notification because you are a member of Ubuntu
Foundations Bugs, which is subscribed to swtpm in Ubuntu.
https://bugs.launchpad.net/bugs/2071478
Title:
Add sys_admin capability to apparmor profile by default
Status in swtpm package in Ubuntu:
Fix Released
Status in swtpm source package in Jammy:
In Progress
Status in swtpm source package in Mantic:
Won't Fix
Status in swtpm source package in Noble:
In Progress
Status in swtpm source package in Oracular:
Fix Released
Bug description:
Based on the upstream discussion here -
https://github.com/stefanberger/swtpm/discussions/866 - certain
features of swtpm require access to kernel modules to work. For
example, using --vtpm-proxy requires the tpm_vtpm_proxy module. This
should work by default, and is fixed by adding capability sys_admin to
the apparmor profile.
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/swtpm/+bug/2071478/+subscriptions
More information about the foundations-bugs
mailing list