aboutsummaryrefslogtreecommitdiff
path: root/src/syscall/exec_linux_test.go
diff options
context:
space:
mode:
Diffstat (limited to 'src/syscall/exec_linux_test.go')
-rw-r--r--src/syscall/exec_linux_test.go4
1 files changed, 4 insertions, 0 deletions
diff --git a/src/syscall/exec_linux_test.go b/src/syscall/exec_linux_test.go
index 68ec6fe3f8..728f10b241 100644
--- a/src/syscall/exec_linux_test.go
+++ b/src/syscall/exec_linux_test.go
@@ -642,6 +642,10 @@ func TestAmbientCaps(t *testing.T) {
}
func TestAmbientCapsUserns(t *testing.T) {
+ b, err := os.ReadFile("/proc/sys/kernel/apparmor_restrict_unprivileged_userns")
+ if err == nil && strings.TrimSpace(string(b)) == "1" {
+ t.Skip("AppArmor restriction for unprivileged user namespaces is enabled")
+ }
testAmbientCaps(t, true)
}