From fbf0679b269f7f235a12c8a56cc050a935b13aad1602318825dba1d5c83c3b7e Mon Sep 17 00:00:00 2001 From: Aleksa Sarai Date: Thu, 29 Sep 2022 08:58:41 +0000 Subject: [PATCH] Accepting request 1006864 from home:cyphar:docker - Add apparmor-parser as a Recommends to make sure that most users will end up with it installed even if they are primarily running SELinux. OBS-URL: https://build.opensuse.org/request/show/1006864 OBS-URL: https://build.opensuse.org/package/show/Virtualization:containers/docker?expand=0&rev=375 --- docker.changes | 6 ++++++ docker.spec | 6 ++++++ 2 files changed, 12 insertions(+) diff --git a/docker.changes b/docker.changes index 6fdbe49..c8dcb06 100644 --- a/docker.changes +++ b/docker.changes @@ -1,3 +1,9 @@ +------------------------------------------------------------------- +Thu Sep 29 08:40:35 UTC 2022 - Aleksa Sarai + +- Add apparmor-parser as a Recommends to make sure that most users will end up + with it installed even if they are primarily running SELinux. + ------------------------------------------------------------------- Thu Sep 29 07:27:03 UTC 2022 - Fabian Vogt diff --git a/docker.spec b/docker.spec index 1ad3bb1..4e3d1e9 100644 --- a/docker.spec +++ b/docker.spec @@ -140,6 +140,12 @@ Requires: xz >= 4.9 Requires(post): %fillup_prereq Requires(post): udev Requires(post): shadow +# This recommends is added to make sure that even if you have container-selinux +# installed you will still be prompted to install apparmor-parser which Docker +# requires to apply AppArmor profiles (for SELinux systems this doesn't matter +# but if you switch back to AppArmor on reboot this would result in insecure +# containers). +Recommends: apparmor-parser # Not necessary, but must be installed when the underlying system is # configured to use lvm and the user doesn't explicitly provide a # different storage-driver than devicemapper