]> git.proxmox.com Git - mirror_lxc.git/blame - config/apparmor/container-rules.base
utils: make keyring allocation failure non-fatal
[mirror_lxc.git] / config / apparmor / container-rules.base
CommitLineData
198b363f
SH
1# Run lxc-generate-aa-rules.py on this file after any modification, to generate
2# the container-rules file which is appended to container-base.in to create the
3# final abstractions/container-base.
4
5block /sys
6allow /sys/fs/cgroup/**
7allow /sys/devices/virtual/net/**
8allow /sys/class/net/**
94a77f3f 9block /proc/sys
198b363f 10allow /proc/sys/kernel/shm*
773bd282
SH
11allow /proc/sys/kernel/sem*
12allow /proc/sys/kernel/msg*
94a77f3f
SH
13allow /proc/sys/kernel/hostname
14allow /proc/sys/kernel/domainname
15allow /proc/sys/net/**