[pkg-go] [pkg-apparmor] Bug#1100135: Conflict between Podman Profile and Pasta profile breaks rootless network shutdown

intrigeri intrigeri at debian.org
Thu Mar 13 17:18:28 GMT 2025


Hi,

Stefano Brivio (2025-03-13):
> Actually, if you need something quick, you don't really need a
> complete/real profile for Podman. You can just add to the current stub
> (untested, but I'm fairly confident):

Thank you for proposing more options!

Sadly, this ventures too far away from my domain of expertise for me
to take responsibility to include this in the Debian-specific delta of
the AppArmor package, or to propose this change to AppArmor upstream
myself so I can then cherry-pick it into Debian.

So at this stage, as far as Debian Trixie is concerned, I'm now
tempted to simply remove the stub podman profile from the apparmor
package: it seems none of us is super comfortable with the workaround
they would have to carry to make it play nicer with pasta. And we
would not be losing much value for our users.

Does this sound reasonable?

Cheers,
-- 
intrigeri



More information about the Pkg-go-maintainers mailing list