mirror_lxc/config/apparmor/abstractions
Serge Hallyn 1b0c17462a apparmor: support lxc.ttydir when bind-mounting ptys
Because we now create the ttys from inside the container, we had to
add an apparmor rule for start-container to bind-mount /dev/pts/** -> /dev/tty*/.
However that's not sufficient if the container sets lxc.ttydir, in
which case we need to support mounting onto files in subdirs of /dev.

Signed-off-by: Serge Hallyn <serge.hallyn@ubuntu.com>
Acked-by: Stéphane Graber <stgraber@ubuntu.com>
2015-01-30 01:02:06 +01:00
..
container-base apparmor: Block access to /proc/kcore 2015-01-05 16:28:33 -05:00
container-base.in apparmor: Block access to /proc/kcore 2015-01-05 16:28:33 -05:00
start-container apparmor: support lxc.ttydir when bind-mounting ptys 2015-01-30 01:02:06 +01:00