]> git.ipfire.org Git - thirdparty/lxc.git/commitdiff
cgmanager: container-base apparmor abstraction: allow mount move
authorSerge Hallyn <serge.hallyn@ubuntu.com>
Mon, 3 Feb 2014 21:16:31 +0000 (15:16 -0600)
committerSerge Hallyn <serge.hallyn@ubuntu.com>
Mon, 3 Feb 2014 21:17:43 +0000 (15:17 -0600)
Signed-off-by: Serge Hallyn <serge.hallyn@ubuntu.com>
config/apparmor/abstractions/container-base

index 9db94e782454c976a70de26f318c003812b09577..d1cd84a4eca9920f1bac26e54f68830f924676e1 100644 (file)
@@ -48,3 +48,4 @@
   deny /sys/fs/cg[^r]*/** wklx,
   deny /sys/firmware/efi/efivars/** rwklx,
   deny /sys/kernel/security/** rwklx,
+  mount options=(move) /sys/fs/cgroup/cgmanager/ -> /sys/fs/cgroup/cgmanager.lower/,