← Back to team overview

kernel-packages team mailing list archive

[Bug 1446906] [NEW] lxc container with postfix, permission denied on mailq

 

Public bug reported:

Hello,

on three Vivid host, all of them up-to-date, I have the problem
described here:

https://bugs.launchpad.net/ubuntu/utopic/+source/linux/+bug/1390223

That bug report shows the problem was fixed, but it is not (at least on
current Vivid)


ii  linux-image-generic 3.19.0.15.14   amd64          Generic Linux kernel image
ii  lxc                 1.1.2-0ubuntu3 amd64          Linux Containers userspace tools
ii  apparmor            2.9.1-0ubuntu9 amd64          User-space parser utility for AppArmor


Reproducible with:

$ sudo lxc-create -n test -t ubuntu
$ sudo lxc-start -n test

(inside container)

$ sudo apt-get install postfix
$ mailq
postqueue: warning: close: Permission denied


dmesg shows:
[82140.386109] audit: type=1400 audit(1429661150.086:17067): apparmor="DENIED" operation="file_perm" profile="lxc-container-default" name="public/showq" pid=27742 comm="postqueue" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0

** Affects: linux (Ubuntu)
     Importance: Undecided
         Status: New

-- 
You received this bug notification because you are a member of Kernel
Packages, which is subscribed to linux in Ubuntu.
https://bugs.launchpad.net/bugs/1446906

Title:
  lxc container with postfix, permission denied on mailq

Status in linux package in Ubuntu:
  New

Bug description:
  Hello,

  on three Vivid host, all of them up-to-date, I have the problem
  described here:

  https://bugs.launchpad.net/ubuntu/utopic/+source/linux/+bug/1390223

  That bug report shows the problem was fixed, but it is not (at least
  on current Vivid)

  
  ii  linux-image-generic 3.19.0.15.14   amd64          Generic Linux kernel image
  ii  lxc                 1.1.2-0ubuntu3 amd64          Linux Containers userspace tools
  ii  apparmor            2.9.1-0ubuntu9 amd64          User-space parser utility for AppArmor

  
  Reproducible with:

  $ sudo lxc-create -n test -t ubuntu
  $ sudo lxc-start -n test

  (inside container)

  $ sudo apt-get install postfix
  $ mailq
  postqueue: warning: close: Permission denied

  
  dmesg shows:
  [82140.386109] audit: type=1400 audit(1429661150.086:17067): apparmor="DENIED" operation="file_perm" profile="lxc-container-default" name="public/showq" pid=27742 comm="postqueue" requested_mask="r" denied_mask="r" fsuid=1000 ouid=0

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1446906/+subscriptions


Follow ups

References