/sbin/dhclient is unconfined after switch to systemd (aka, equivalent of upstart's network-interface-security.conf not implemented)
Bug #1438249 reported by
Jamie Strandboge
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
systemd (Ubuntu) |
Fix Released
|
High
|
Martin Pitt |
Bug Description
dhclient is starting before the apparmor profile for it is loaded which results in the following output from aa-status:
$ sudo aa-status
...
4 profiles are in enforce mode.
/sbin/dhclient
...
1 processes are unconfined but have a profile defined.
/sbin/dhclient (634)
Upstart had the network-
To post a comment you must log in.
/etc/init/ network- interface- security. conf is in ifupdown, so let's put the corresponding system unit there, too.