Skip to content

Commit b4b480b

Browse files
committed
Add AppArmor sysctl entries to exception list
Fixes failing CI on Ubuntu and Fedora caused by new sysctl options. Addressing: ``` 239/278 Test #239: probes/sysctl/test_sysctl_probe_all.sh .............................................***Failed 0.48 sec Result file: test_sysctl_probe_all.res.out.49w9xN Our names file: test_sysctl_probe_all.our.out.o4wjUZ Sysctl names file: test_sysctl_probe_all.sysctl.out.3nEoMb Errors file: test_sysctl_probe_all.err.out.YeCCxH Diff (sysctlNames / ourNames): ------ 56,58d55 < kernel.apparmor_restrict_unprivileged_userns < kernel.apparmor_restrict_unprivileged_userns_complain < kernel.apparmor_restrict_unprivileged_userns_force ```
1 parent 3a987f3 commit b4b480b

File tree

1 file changed

+4
-1
lines changed

1 file changed

+4
-1
lines changed

tests/probes/sysctl/test_sysctl_probe_all.sh

Lines changed: 4 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -16,9 +16,12 @@ SYSCTL_EXCLUDE='
1616
fs.protected_fifos
1717
fs.protected_regular
1818
fs.protected_symlinks
19+
kernel.apparmor_display_secid_mode
20+
kernel.apparmor_restrict_unprivileged_userns
21+
kernel.apparmor_restrict_unprivileged_userns_complain
22+
kernel.apparmor_restrict_unprivileged_userns_force
1923
kernel.cad_pid
2024
kernel.unprivileged_userns_apparmor_policy
21-
kernel.apparmor_display_secid_mode
2225
kernel.usermodehelper.bset
2326
kernel.usermodehelper.inheritable
2427
net.core.bpf_jit_harden

0 commit comments

Comments
 (0)