# Do not load this file. Rather, load /etc/apparmor.d/lxc-containers, which # will source all profiles under /etc/apparmor.d/lxc profile lxc-container-default flags=(attach_disconnected,mediate_deleted) { #include <abstractions/lxc/container-base> # the container may never be allowed to mount devpts. If it does, it # will remount the host's devpts. We could allow it to do it with # the newinstance option (but, right now, we don't). deny mount fstype=devpts, }
Name | Type | Size | Permission | Actions |
---|---|---|---|---|
lxc-default | File | 479 B | 0644 |
|
lxc-default-cgns | File | 573 B | 0644 |
|
lxc-default-with-mounting | File | 544 B | 0644 |
|
lxc-default-with-nesting | File | 572 B | 0644 |
|