Comment 2 for bug 2040194

Revision history for this message
Alex Murray (alexmurray) wrote :

Could the LXD team instead just read /sys/kernel/security/apparmor/features/policy/unconfined_restrictions/userns since this has the same value as the sysctl /proc/sys/kernel/apparmor_restrict_unprivileged_userns