apparmor denials reported for encrypted HOME
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
Snappy |
Fix Released
|
Medium
|
Unassigned | ||
ubuntu-core-launcher (Ubuntu) |
Fix Released
|
Medium
|
Jamie Strandboge | ||
Xenial |
Fix Released
|
Medium
|
Jamie Strandboge |
Bug Description
I just did a fresh install of Ubuntu 16.04 with encrypted $HOME. I've installed my links snap and it seems to work but I see odd apparmor denials in syslog:
abr 25 12:09:25 vm audit[2128]: AVC apparmor="DENIED" operation="open" profile=
abr 25 12:09:25 vm audit[2128]: AVC apparmor="DENIED" operation="open" profile=
abr 25 12:09:25 vm audit[2128]: AVC apparmor="DENIED" operation="open" profile=
abr 25 12:09:25 vm audit[2128]: AVC apparmor="DENIED" operation="open" profile=
abr 25 12:09:25 vm kernel: audit_printk_skb: 36 callbacks suppressed
tags: | added: apparmor |
Changed in snappy: | |
status: | New → Triaged |
importance: | Undecided → Medium |
milestone: | none → sru-2 |
Changed in ubuntu-core-launcher (Ubuntu): | |
status: | New → Triaged |
Changed in ubuntu-core-launcher (Ubuntu Xenial): | |
status: | New → Triaged |
Changed in ubuntu-core-launcher (Ubuntu): | |
importance: | Undecided → Medium |
Changed in ubuntu-core-launcher (Ubuntu Xenial): | |
importance: | Undecided → Medium |
assignee: | nobody → Jamie Strandboge (jdstrand) |
Changed in ubuntu-core-launcher (Ubuntu): | |
assignee: | nobody → Jamie Strandboge (jdstrand) |
Changed in ubuntu-core-launcher (Ubuntu): | |
status: | Triaged → In Progress |
Changed in ubuntu-core-launcher (Ubuntu): | |
status: | In Progress → Fix Committed |
Changed in ubuntu-core-launcher (Ubuntu): | |
status: | Fix Released → Fix Committed |
summary: |
- apparmor denials reported for encryped HOME + apparmor denials reported for encrypted HOME |
This bug was fixed in the package ubuntu- core-launcher - 1.0.29
--------------- core-launcher (1.0.29) yakkety; urgency=medium
ubuntu-
* debian/ usr.bin. ubuntu- core-launcher: add workaround rules for ecryptfs
until the upcoming kernel fix lands everywhere (LP: #1574556)
-- Jamie Strandboge <email address hidden> Tue, 10 May 2016 12:10:35 -0500