Skip to content

fix: persistent apparmor linux-sandbox rule, write permission for pr check workflow#110

Merged
lurtz merged 2 commits intoeclipse-score:mainfrom
elektrobit-contrib:persistent-apparmor-linux-sandbox-settings
Apr 13, 2026
Merged

fix: persistent apparmor linux-sandbox rule, write permission for pr check workflow#110
lurtz merged 2 commits intoeclipse-score:mainfrom
elektrobit-contrib:persistent-apparmor-linux-sandbox-settings

Conversation

@lurtz
Copy link
Copy Markdown
Contributor

@lurtz lurtz commented Apr 13, 2026

The linux-sandbox profile was not active after reboot. Most likely it is either because it was loaded before or after the profile, which disables Linux namespaces for most applications. With the aaa prefix it works when tested with systemctl restart apparmor.service.

The pr title workflow should write a comment, if the check fails. But the workflow lacked the write permission. With that it should work.

@lurtz lurtz changed the title make linux-sandbox settings persistent across reboots fix: Across reboot persistent linux-sandbox apparmor rule, write permission for pr check workflow Apr 13, 2026
@lurtz lurtz changed the title fix: Across reboot persistent linux-sandbox apparmor rule, write permission for pr check workflow fix: persistent apparmor linux-sandbox rule, write permission for pr check workflow Apr 13, 2026
@lurtz lurtz marked this pull request as ready for review April 13, 2026 10:27
@lurtz lurtz requested a review from opajonk as a code owner April 13, 2026 10:27
@lurtz lurtz enabled auto-merge April 13, 2026 10:27
@lurtz lurtz added this pull request to the merge queue Apr 13, 2026
Merged via the queue into eclipse-score:main with commit b5a7114 Apr 13, 2026
9 checks passed
@lurtz lurtz deleted the persistent-apparmor-linux-sandbox-settings branch April 13, 2026 10:56
@github-actions
Copy link
Copy Markdown

🎉 This PR is included in version 1.4.0 🎉

The release is available on GitHub release

Your semantic-release bot 📦🚀

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants