From f2f545857cd6b06689bb1220d66d3577f802dbbc Mon Sep 17 00:00:00 2001 From: Jesse Tane Date: Mon, 30 Jun 2014 15:37:52 -0400 Subject: [PATCH] Apparmor: allow hugetlbfs mounts everywhere MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit Signed-off-by: Jesse Tane Acked-by: Stéphane Graber --- config/apparmor/abstractions/container-base | 3 +++ config/apparmor/abstractions/container-base.in | 3 +++ 2 files changed, 6 insertions(+) diff --git a/config/apparmor/abstractions/container-base b/config/apparmor/abstractions/container-base index 71e93487e..d783c955b 100644 --- a/config/apparmor/abstractions/container-base +++ b/config/apparmor/abstractions/container-base @@ -15,6 +15,9 @@ # allow tmpfs mounts everywhere mount fstype=tmpfs, + # allow hugetlbfs mounts everywhere + mount fstype=hugetlbfs, + # allow mqueue mounts everywhere mount fstype=mqueue, diff --git a/config/apparmor/abstractions/container-base.in b/config/apparmor/abstractions/container-base.in index 17be29734..c82f90038 100644 --- a/config/apparmor/abstractions/container-base.in +++ b/config/apparmor/abstractions/container-base.in @@ -15,6 +15,9 @@ # allow tmpfs mounts everywhere mount fstype=tmpfs, + # allow hugetlbfs mounts everywhere + mount fstype=hugetlbfs, + # allow mqueue mounts everywhere mount fstype=mqueue,