Comment 3 for bug 1107686

Revision history for this message
John Johansen (jjohansen) wrote :

The apparmor rule for af family packet needs to be changed, or a new rule needs to be added
  network packet packet,

the denials in the log
Jan 27 16:30:17 gilles-PC kernel: [ 5019.663392] type=1400 audit(1359300617.371:40): apparmor="DENIED" operation="create" parent=1 profile="/usr/sbin/dhcpd" pid=19585 comm="dhcpd" family="packet" sock_type="raw" protocol=768

show that raw sockets of the packet family need to be allowed, this can be done with any of the following, listed from most specific to most generic

  network packet raw,
  network packet,
  network,