Another idea would be to make sure that at least Ubuntu systems don't load apparmor policy in the container when using libvirt-lxc like we've done with lxc. This would at least make trusted Ubuntu containers to work reasonably well and not mess up the host policy.
Another idea would be to make sure that at least Ubuntu systems don't load apparmor policy in the container when using libvirt-lxc like we've done with lxc. This would at least make trusted Ubuntu containers to work reasonably well and not mess up the host policy.