Merge pull request #5049 from Supermathie/aa-fix

apparmor: docker-default: Include base abstraction
This commit is contained in:
Guillaume J. Charmes 2014-04-07 21:34:01 -07:00
commit 908be5a3d9

View file

@ -11,13 +11,10 @@ import (
const DefaultProfilePath = "/etc/apparmor.d/docker"
const DefaultProfile = `
# AppArmor profile from lxc for containers.
@{HOME}=@{HOMEDIRS}/*/ /root/
@{HOMEDIRS}=/home/
#@{HOMEDIRS}+=
@{multiarch}=*-linux-gnu*
@{PROC}=/proc/
#include <tunables/global>
profile docker-default flags=(attach_disconnected,mediate_deleted) {
#include <abstractions/base>
network,
capability,
file,