Skip to content

docker run --privileged mode errors, run strongswan inside container. #14550

@netskyline

Description

@netskyline

docker run --privileged mode errors, run strongswan inside container. these errors are reported:

Jul 11 03:13:47 sg2 kernel: [539237.172711] audit_printk_skb: 9 callbacks suppressed
Jul 11 03:13:47 sg2 kernel: [539237.172716] type=1400 audit(1436598827.277:266049): apparmor="DENIED" operation="getattr" info="Failed name lookup - disconnected path" error=-13 profile="/usr/lib/ipsec/charon" name="var/lib/docker/aufs/diff/fed62ecd54db79fbce8e66a6ba17fe2fafb71cec19c71f671b9fa85bdea6126c/usr/lib" pid=15021 comm="charon" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
Jul 11 03:13:52 sg2 kernel: [539242.174548] type=1400 audit(1436598832.277:266050): apparmor="DENIED" operation="open" info="Failed name lookup - disconnected path" error=-13 profile="/usr/lib/ipsec/charon" name="var/lib/docker/aufs/diff/fed62ecd54db79fbce8e66a6ba17fe2fafb71cec19c71f671b9fa85bdea6126c/usr/lib/ipsec/libstrongswan.so.0.0.0" pid=15022 comm="charon" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
Jul 11 03:13:52 sg2 kernel: [539242.174583] type=1400 audit(1436598832.277:266051): apparmor="DENIED" operation="getattr" info="Failed name lookup - disconnected path" error=-13 profile="/usr/lib/ipsec/charon" name="var/lib/docker/aufs/diff/fed62ecd54db79fbce8e66a6ba17fe2fafb71cec19c71f671b9fa85bdea6126c/usr/lib/ipsec" pid=15022 comm="charon" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
Jul 11 03:13:52 sg2 kernel: [539242.174617] type=1400 audit(1436598832.277:266052): apparmor="DENIED" operation="open" info="Failed name lookup - disconnected path" error=-13 profile="/usr/lib/ipsec/charon" name="var/lib/docker/aufs/diff/fed62ecd54db79fbce8e66a6ba17fe2fafb71cec19c71f671b9fa85bdea6126c/etc/ld.so.cache" pid=15022 comm="charon" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
Jul 11 03:13:52 sg2 kernel: [539242.174676] type=1400 audit(1436598832.277:266053): apparmor="DENIED" operation="getattr" info="Failed name lookup - disconnected path" error=-13 profile="/usr/lib/ipsec/charon" name="var/lib/docker/aufs/diff/fed62ecd54db79fbce8e66a6ba17fe2fafb71cec19c71f671b9fa85bdea6126c/lib/x86_64-linux-gnu" pid=15022 comm="charon" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
Jul 11 03:13:52 sg2 kernel: [539242.174754] type=1400 audit(1436598832.277:266054): apparmor="DENIED" operation="getattr" info="Failed name lookup - disconnected path" error=-13 profile="/usr/lib/ipsec/charon" name="var/lib/docker/aufs/diff/fed62ecd54db79fbce8e66a6ba17fe2fafb71cec19c71f671b9fa85bdea6126c/usr/lib/x86_64-linux-gnu" pid=15022 comm="charon" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
Jul 11 03:13:52 sg2 kernel: [539242.174797] type=1400 audit(1436598832.277:266055): apparmor="DENIED" operation="getattr" info="Failed name lookup - disconnected path" error=-13 profile="/usr/lib/ipsec/charon" name="var/lib/docker/aufs/diff/fed62ecd54db79fbce8e66a6ba17fe2fafb71cec19c71f671b9fa85bdea6126c/lib" pid=15022 comm="charon" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
Jul 11 03:13:52 sg2 kernel: [539242.174849] type=1400 audit(1436598832.277:266056): apparmor="DENIED" operation="getattr" info="Failed name lookup - disconnected path" error=-13 profile="/usr/lib/ipsec/charon" name="var/lib/docker/aufs/diff/fed62ecd54db79fbce8e66a6ba17fe2fafb71cec19c71f671b9fa85bdea6126c/usr/lib" pid=15022 comm="charon" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
Jul 11 03:13:57 sg2 kernel: [539247.177379] type=1400 audit(1436598837.281:266057): apparmor="DENIED" operation="open" info="Failed name lookup - disconnected path" error=-13 profile="/usr/lib/ipsec/charon" name="var/lib/docker/aufs/diff/fed62ecd54db79fbce8e66a6ba17fe2fafb71cec19c71f671b9fa85bdea6126c/usr/lib/ipsec/libstrongswan.so.0.0.0" pid=15023 comm="charon" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
Jul 11 03:13:57 sg2 kernel: [539247.177435] type=1400 audit(1436598837.281:266058): apparmor="DENIED" operation="getattr" info="Failed name lookup - disconnected path" error=-13 profile="/usr/lib/ipsec/charon" name="var/lib/docker/aufs/diff/fed62ecd54db79fbce8e66a6ba17fe2fafb71cec19c71f671b9fa85bdea6126c/usr/lib/ipsec" pid=15023 comm="charon" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
Jul 11 03:13:57 sg2 kernel: [539247.177491] type=1400 audit(1436598837.281:266059): apparmor="DENIED" operation="open" info="Failed name lookup - disconnected path" error=-13 profile="/usr/lib/ipsec/charon" name="var/lib/docker/aufs/diff/fed62ecd54db79fbce8e66a6ba17fe2fafb71cec19c71f671b9fa85bdea6126c/etc/ld.so.cache" pid=15023 comm="charon" requested_mask="r" denied_mask="r" fsuid=0 ouid=0

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions