Skip to content

Add AppArmor profile for Ubuntu Noble#3271

Merged
peterebden merged 1 commit intothought-machine:masterfrom
peterebden:add-apparmor-profile
Oct 9, 2024
Merged

Add AppArmor profile for Ubuntu Noble#3271
peterebden merged 1 commit intothought-machine:masterfrom
peterebden:add-apparmor-profile

Conversation

@peterebden
Copy link
Copy Markdown
Collaborator

They are restricting unprivileged user namespaces, which causes our sandboxing to fail. This adds an example AppArmor profile to allow it again, and adds a note in the docs explaining.

Have tried this on a machine running Noble (N.B. it has to be a real machine, not just a container) and plz test //src/core:core_test -o sandbox.test:true now works.

@peterebden peterebden merged commit 138df07 into thought-machine:master Oct 9, 2024
@peterebden peterebden deleted the add-apparmor-profile branch October 9, 2024 14:57
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants