Comment 6 for bug 987371

Revision history for this message
Serge Hallyn (serge-hallyn) wrote :

@Christopher,

To support switching to any other profile than unconfined or "lxc-*", you need to add a transition rule to /etc/apparmor.d/local/usr.bin.lxc-start (see /etc/apparmor.d/usr.bin.lxc-start for the default profile).

If you still have trouble, please open a new bug, showing the relevant profiles and 'sudo aa-status' output, plus the file 'outout' resulting from doing 'lxc-start -n <container> -l DEBUG -o outout'.