invalid syntax in apparmor profile abstractions/lxc/container-base

Bug #1061537 reported by Iain Lane
36
This bug affects 7 people
Affects Status Importance Assigned to Milestone
apparmor (Ubuntu)
Triaged
Medium
Unassigned

Bug Description

When trying to debug something else,

,----
| laney@raleigh> sudo aa-logprof
|
| abstractions/lxc/container-base contains syntax errors. Line [ capability,]
`----

I don't know enough about apparmor profiles to be able to suggest anything I'm afraid.

ProblemType: Bug
DistroRelease: Ubuntu 12.10
Package: lxc 0.8.0~rc1-4ubuntu36
ProcVersionSignature: Ubuntu 3.5.0-16.25-generic 3.5.4
Uname: Linux 3.5.0-16-generic x86_64
NonfreeKernelModules: nvidia
ApportVersion: 2.6.1-0ubuntu1
Architecture: amd64
Date: Thu Oct 4 12:13:45 2012
InstallationMedia: Ubuntu 12.04 LTS "Precise Pangolin" - Release amd64 (20120425)
SourcePackage: lxc
UpgradeStatus: No upgrade log present (probably fresh install)
lxcsyslog:

Revision history for this message
Iain Lane (laney) wrote :
Revision history for this message
John Johansen (jjohansen) wrote :

thankyou for reporting this,

I can suggest a "work around" while you wait for a fix to logprof

edit the /etc/apparmor.d/abstractions/lxc/container-base file and comment out the line that has
  capability,

by changing it to
# capability,

do this to any line containing a mount rule too.
  mount ...

Now you should be able to run logprof, once you are done running logprof you can edit the /etc/apparmor.d/abstractions/lxc/container-base file and remove the # from the capability and mount rules.

affects: lxc (Ubuntu) → apparmor (Ubuntu)
Changed in apparmor (Ubuntu):
status: New → Confirmed
James Page (james-page)
Changed in apparmor (Ubuntu):
importance: Undecided → Medium
status: Confirmed → Triaged
Revision history for this message
Julian Taylor (jtaylor) wrote :

this bug is a pretty big nuisance as you have to remove almost everything lxc related from several locations in apparmor.d to get it to work again.
just "fixing" container-base just results in more broken stuff in lxc/lxc-defaults, lxc-containers, ....

Revision history for this message
webrat (irc-webratz) wrote :

I do eperience the same issue on an ubuntu 12.04.1 64bit setup.

To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.