The simplest way I could think of to reproduce the issue: 1) systemctl edit strongswan 2) Enter the following to use the mount namespace: [Service] ProtectSystem=full 3) systemctl restart strongswan 4) Check dmesg for Apparmor denials, there should be none 5) "ipsec status" should list something
Without the update, dmesg is full of denials like in comment 18 and "ipsec status" produces no output. With the update applied, everything works fine. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1587886 Title: strongswan ipsec status issue with apparmor To manage notifications about this bug go to: https://bugs.launchpad.net/hundredpapercuts/+bug/1587886/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs