Invalid mode found: AUDITING
Bug #1358705 reported by
Paweł Krawczyk
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
AppArmor |
Fix Released
|
Undecided
|
Unassigned |
Bug Description
aa-logprof crashes with the following error:
Invalid mode found: AUDITING
File "/usr/sbin/
lp_ret = apparmor.
File "/usr/lib/
ask_
File "/usr/lib/
fatal_
File "/usr/lib/
tb_stack = traceback.
when I have some processes running in AUDIT mode.
Changed in apparmor: | |
milestone: | none → 2.9.0 |
To post a comment you must log in.
Can you please attach some example log lines that cause this? (Typical log locations are /var/log/ audit/audit. log, /var/log/messages or /var/log/syslog)
This probably needs to be fixed in logparser.py add_event_to_tree() (which is expected to ignore audit events) - but I'll need the log sample to get it right.