diff options
| author | Michael Vogt <mvo@ubuntu.com> | 2017-11-23 10:17:48 +0100 |
|---|---|---|
| committer | Michael Vogt <mvo@ubuntu.com> | 2017-11-23 11:55:08 +0100 |
| commit | ec97fff63ae304fcd86c35da27d89177308b3425 (patch) | |
| tree | c1d6c7b577ba4af5a3de5b832df395974c72d19d | |
| parent | 718675cf070e652f17ca4466b00abd6786e4b64d (diff) | |
apparmor: generate the snap-confine re-exec profile for AppArmor{Partial,Full}partically-exmained-apparmorpartial-apparmor-still-needs-snapd-profile
| -rw-r--r-- | interfaces/apparmor/backend.go | 2 |
1 files changed, 1 insertions, 1 deletions
diff --git a/interfaces/apparmor/backend.go b/interfaces/apparmor/backend.go index f817f479da..1b916dcd8a 100644 --- a/interfaces/apparmor/backend.go +++ b/interfaces/apparmor/backend.go @@ -279,7 +279,7 @@ func (b *Backend) Setup(snapInfo *snap.Info, opts interfaces.ConfinementOptions, } // core on classic is special - if snapName == "core" && release.OnClassic && !release.ReleaseInfo.ForceDevMode() { + if snapName == "core" && release.OnClassic && release.AppArmorLevel() != release.NoAppArmor { if err := setupSnapConfineReexec(snapInfo); err != nil { logger.Noticef("cannot create host snap-confine apparmor configuration: %s", err) } |
