]> git.ipfire.org Git - thirdparty/lxc.git/commit
apparmor: allow writes to sem* and msg* sysctls
authorSerge Hallyn <serge.hallyn@ubuntu.com>
Tue, 29 Apr 2014 19:57:49 +0000 (14:57 -0500)
committerSerge Hallyn <serge.hallyn@ubuntu.com>
Tue, 29 Apr 2014 21:45:16 +0000 (16:45 -0500)
commit773bd28258371ad0058ff946c5cf94419920ffdd
treefda2de00952171bc20d7bc36345d794fdf38444b
parent71a606eeb366a8157626108db3a3bedc14469dd6
apparmor: allow writes to sem* and msg* sysctls

/proc/sys/kernel/sem* and /proc/sys/kernel/msg* are ipc sysctls
which are properly namespaced.  Allow writes to them from
containers.

Reported-by: Dan Kegel <dank@kegel.com>
Signed-off-by: Serge Hallyn <serge.hallyn@ubuntu.com>
Acked-by: Stéphane Graber <stgraber@ubuntu.com>
config/apparmor/abstractions/container-base
config/apparmor/container-rules
config/apparmor/container-rules.base