Hallo,
in Container Templates werden massig viele apparmor Fehler gemeldet.
Auszug aus der Syslog:
Mar 8 13:24:54 DBSystem kernel: [1280372.225264] audit: type=1400 audit(1457439894.633:40664): apparmor="DENIED" operation="file_perm" profile="lxc-container-default" name="private/bounce" pid=8335 comm="smtp" requested_mask="r" denied_mask="r" fsuid=100 ouid=0
Mar 8 13:29:54 DBSystem kernel: [1280671.842798] audit_printk_skb: 6 callbacks suppressed
Mar 8 13:29:54 DBSystem kernel: [1280671.842802] audit: type=1400 audit(1457440194.255:40673): apparmor="DENIED" operation="file_perm" profile="lxc-container-default" name="private/bounce" pid=10406 comm="smtp" requested_mask="r" denied_mask="r" fsuid=100 ouid=0
Mar 8 13:29:54 DBSystem kernel: [1280671.842808] audit: type=1400 audit(1457440194.255:40674): apparmor="DENIED" operation="file_perm" profile="lxc-container-default" name="private/bounce" pid=10406 comm="smtp" requested_mask="r" denied_mask="r" fsuid=100 ouid=0
Mar 8 13:29:54 DBSystem kernel: [1280672.210079] audit: type=1400 audit(1457440194.623:40678): apparmor="DENIED" operation="file_perm" profile="lxc-container-default" name="private/defer" pid=10406 comm="smtp" requested_mask="r" denied_mask="r" fsuid=100 ouid=0
Mar 8 13:29:54 DBSystem kernel: [1280672.210754] audit: type=1400 audit(1457440194.623:40680): apparmor="DENIED" operation="file_perm" profile="lxc-container-default" name="private/bounce" pid=16127 comm="qmgr" requested_mask="r" denied_mask="r" fsuid=100 ouid=0
Mar 8 13:29:54 DBSystem kernel: [1280672.365702] audit: type=1400 audit(1457440194.779:40682): apparmor="DENIED" operation="file_perm" profile="lxc-container-default" name="private/defer" pid=10407 comm="smtp" requested_mask="r" denied_mask="r" fsuid=100 ouid=0
Mar 8 13:34:54 DBSystem kernel: [1280971.805610] audit: type=1400 audit(1457440494.225:40685): apparmor="DENIED" operation="file_perm" profile="lxc-container-default" name="private/bounce" pid=12520 comm="smtp" requested_mask="r" denied_mask="r" fsuid=100 ouid=0
Mar 8 13:34:54 DBSystem kernel: [1280971.916994] audit: type=1400 audit(1457440494.333:40687): apparmor="DENIED" operation="file_perm" profile="lxc-container-default" name="private/bounce" pid=12521 comm="smtp" requested_mask="r" denied_mask="r" fsuid=100 ouid=0
Weiß jemand, wie apparmor eingestellt werden muss, damit die verweigerten Aktionen fehlerfrei ausgeführt werden können?
in Container Templates werden massig viele apparmor Fehler gemeldet.
Auszug aus der Syslog:
Mar 8 13:24:54 DBSystem kernel: [1280372.225264] audit: type=1400 audit(1457439894.633:40664): apparmor="DENIED" operation="file_perm" profile="lxc-container-default" name="private/bounce" pid=8335 comm="smtp" requested_mask="r" denied_mask="r" fsuid=100 ouid=0
Mar 8 13:29:54 DBSystem kernel: [1280671.842798] audit_printk_skb: 6 callbacks suppressed
Mar 8 13:29:54 DBSystem kernel: [1280671.842802] audit: type=1400 audit(1457440194.255:40673): apparmor="DENIED" operation="file_perm" profile="lxc-container-default" name="private/bounce" pid=10406 comm="smtp" requested_mask="r" denied_mask="r" fsuid=100 ouid=0
Mar 8 13:29:54 DBSystem kernel: [1280671.842808] audit: type=1400 audit(1457440194.255:40674): apparmor="DENIED" operation="file_perm" profile="lxc-container-default" name="private/bounce" pid=10406 comm="smtp" requested_mask="r" denied_mask="r" fsuid=100 ouid=0
Mar 8 13:29:54 DBSystem kernel: [1280672.210079] audit: type=1400 audit(1457440194.623:40678): apparmor="DENIED" operation="file_perm" profile="lxc-container-default" name="private/defer" pid=10406 comm="smtp" requested_mask="r" denied_mask="r" fsuid=100 ouid=0
Mar 8 13:29:54 DBSystem kernel: [1280672.210754] audit: type=1400 audit(1457440194.623:40680): apparmor="DENIED" operation="file_perm" profile="lxc-container-default" name="private/bounce" pid=16127 comm="qmgr" requested_mask="r" denied_mask="r" fsuid=100 ouid=0
Mar 8 13:29:54 DBSystem kernel: [1280672.365702] audit: type=1400 audit(1457440194.779:40682): apparmor="DENIED" operation="file_perm" profile="lxc-container-default" name="private/defer" pid=10407 comm="smtp" requested_mask="r" denied_mask="r" fsuid=100 ouid=0
Mar 8 13:34:54 DBSystem kernel: [1280971.805610] audit: type=1400 audit(1457440494.225:40685): apparmor="DENIED" operation="file_perm" profile="lxc-container-default" name="private/bounce" pid=12520 comm="smtp" requested_mask="r" denied_mask="r" fsuid=100 ouid=0
Mar 8 13:34:54 DBSystem kernel: [1280971.916994] audit: type=1400 audit(1457440494.333:40687): apparmor="DENIED" operation="file_perm" profile="lxc-container-default" name="private/bounce" pid=12521 comm="smtp" requested_mask="r" denied_mask="r" fsuid=100 ouid=0
Weiß jemand, wie apparmor eingestellt werden muss, damit die verweigerten Aktionen fehlerfrei ausgeführt werden können?