Comment 7 for bug 1295774

Revision history for this message
Florian Engelmann (engelmann) wrote :

I tried deleting
/etc/apparmor.d/cache/*

and restarting apparmor

service apparmor restart

but this failes:

root@global04:/# rm -rf /etc/apparmor.d/cache/*
root@global04:/# /etc/init.d/apparmor restart
 * Reloading AppArmor profiles Skipping profile in /etc/apparmor.d/disable: usr.sbin.rsyslogd
Enocoding of mount rule failed
ERROR processing policydb rules for profile lxc-container-default, failed to load
                                                                                                                               [ OK ]
root@global04:/# ls -la /etc/apparmor.d/cache/
total 124
drwxr-xr-x 2 root root 4096 Mar 24 13:30 .
drwxr-xr-x 9 root root 4096 Mar 21 12:27 ..
-rw-r--r-- 1 root root 1095 Mar 24 13:30 .features
-rw------- 1 root root 0 Mar 24 13:30 lxc-containers-uOYqHQ
-rw------- 1 root root 58275 Mar 24 13:30 sbin.dhclient
-rw------- 1 root root 6033 Mar 24 13:30 usr.bin.lxc-start
-rw------- 1 root root 41193 Mar 24 13:30 usr.sbin.tcpdump

aa-status:

apparmor module is loaded.
5 profiles are loaded.
5 profiles are in enforce mode.
   /sbin/dhclient
   /usr/bin/lxc-start
   /usr/lib/NetworkManager/nm-dhcp-client.action
   /usr/lib/connman/scripts/dhclient-script
   /usr/sbin/tcpdump
0 profiles are in complain mode.
5 processes have profiles defined.
5 processes are in enforce mode.
   /usr/bin/lxc-start (8341)
   /usr/bin/lxc-start (8363)
   /usr/bin/lxc-start (8527)
   /usr/bin/lxc-start (8814)
   /usr/bin/lxc-start (8900)
0 processes are in complain mode.
0 processes are unconfined but have a profile defined.