[pkg-apparmor] Bug#877581: Bug#877581: Bug#877581: apparmor: Ensure Linux 4.14 does not break abstractions/nameservice

intrigeri intrigeri at debian.org
Wed Oct 25 09:31:55 UTC 2017


Vincas Dargis:
> On 2017.10.24 14:23, intrigeri wrote:
>> When testing stuff on 4.14, make sure you:
>>
>>   - use apparmor 2.11.1
>>
>>   - disable features-files= in /etc/apparmor/parser.conf (otherwise not
>>     only you'll be stuck to 4.13's feature set and unable to do useful
>>     work here, but worse you'll hit a kernel bug wrt. feature set
>>     pinning & network rules that totally breaks unix/netlink/etc.)

> Got it.

> About that dhclient, using it for /etc/network/intrefaces interface with dhcp set, it
> fails to setup network due to /bin/run-parts DENIED, although this is out of scope
> for this bug report I guess.

I don't think this dhclient profile is shipped in Debian (#795467).
I bet Ubuntu's profile is more up-to-date than the one I've taken from
them a while ago. So yeah, I think it's out of scope here :)

Cheers,
-- 
intrigeri



More information about the pkg-apparmor-team mailing list