Comment 3 for bug 1927098

Revision history for this message
John A Meinel (jameinel) wrote :

So inside of a Focal VM, I just did:

$ /snap/bin/juju --version
2.9.4-ubuntu-amd64
$ /snap/bin/juju bootstrap lxd lxd --bootstrap-series focal
Creating Juju controller "lxd" on lxd/default
Looking for packaged Juju agent version 2.9.4 for amd64
No packaged binary found, preparing local Juju agent binary
To configure your system to better support LXD containers, please see: https://github.com/lxc/lxd/blob/master/doc/production-setup.md
Launching controller instance(s) on lxd/default...
 - juju-97ff2b-0 (arch=amd64)
Installing Juju agent on bootstrap instance
Fetching Juju Dashboard 0.7.1
Waiting for address
Attempting to connect to 10.5.24.169:22
Connected to 10.5.24.169
Running machine configuration script...
Bootstrap agent now started
Contacting Juju controller at 10.5.24.169 to verify accessibility...

Bootstrap complete, controller "lxd" is now available
Controller machines are in the "controller" model
Initial model "default" added

And now in /var/log/syslog I'm getting:
Jun 4 10:40:32 focal kernel: [1156088.912281] audit: type=1400 audit(1622817632.004:1837714): apparmor="DENIED" operation="open" namespace="root//lxd-juju-97ff2b-0_<var-snap-lxd-common-lxd>" profile="snap.juju-db.daemon" name="/proc/3732/net/netstat" pid=3413485 comm="ftdc" requested_mask="r" denied_mask="r" fsuid=1000000 ouid=1000000
Jun 4 10:40:32 focal kernel: [1156088.912293] audit: type=1400 audit(1622817632.004:1837715): apparmor="DENIED" operation="open" namespace="root//lxd-juju-97ff2b-0_<var-snap-lxd-common-lxd>" profile="snap.juju-db.daemon" name="/proc/3732/net/snmp" pid=3413485 comm="ftdc" requested_mask="r" denied_mask="r" fsuid=1000000 ouid=1000000
Jun 4 10:40:33 focal kernel: [1156089.914841] audit: type=1400 audit(1622817633.008:1837716): apparmor="DENIED" operation="open" namespace="root//lxd-juju-97ff2b-0_<var-snap-lxd-common-lxd>" profile="snap.juju-db.daemon" name="/proc/3732/net/netstat" pid=3413485 comm="ftdc" requested_mask="r" denied_mask="r" fsuid=1000000 ouid=1000000
Jun 4 10:40:33 focal kernel: [1156089.914855] audit: type=1400 audit(1622817633.008:1837717): apparmor="DENIED" operation="open" namespace="root//lxd-juju-97ff2b-0_<var-snap-lxd-common-lxd>" profile="snap.juju-db.daemon" name="/proc/3732/net/snmp" pid=3413485 comm="ftdc" requested_mask="r" denied_mask="r" fsuid=1000000 ouid=1000000
Jun 4 10:40:35 focal kernel: [1156091.909630] kauditd_printk_skb: 2 callbacks suppressed
Jun 4 10:40:35 focal kernel: [1156091.909633] audit: type=1400 audit(1622817635.004:1837720): apparmor="DENIED" operation="open" namespace="root//lxd-juju-97ff2b-0_<var-snap-lxd-common-lxd>" profile="snap.juju-db.daemon" name="/proc/3732/net/netstat" pid=3413485 comm="ftdc" requested_mask="r" denied_mask="r" fsuid=1000000 ouid=1000000
Jun 4 10:40:35 focal kernel: [1156091.909640] audit: type=1400 audit(1622817635.004:1837721): apparmor="DENIED" operation="open" namespace="root//lxd-juju-97ff2b-0_<var-snap-lxd-common-lxd>" profile="snap.juju-db.daemon" name="/proc/3732/net/snmp" pid=3413485 comm="ftdc" requested_mask="r" denied_mask="r" fsuid=1000000 ouid=1000000
Jun 4 10:40:36 focal kernel: [1156092.904198] audit: type=1400 audit(1622817635.996:1837722): apparmor="DENIED" operation="open" namespace="root//lxd-juju-97ff2b-0_<var-snap-lxd-common-lxd>" profile="snap.juju-db.daemon" name="/proc/3732/net/netstat" pid=3413485 comm="ftdc" requested_mask="r" denied_mask="r" fsuid=1000000 ouid=1000000
Jun 4 10:40:36 focal kernel: [1156092.904202] audit: type=1400 audit(1622817635.996:1837723): apparmor="DENIED" operation="open" namespace="root//lxd-juju-97ff2b-0_<var-snap-lxd-common-lxd>" profile="snap.juju-db.daemon" name="/proc/3732/net/snmp" pid=3413485 comm="ftdc" requested_mask="r" denied_mask="r" fsuid=1000000 ouid=1000000