Yes, it seems what we need is an app in a non-user writable area (i.e. as part of the system) that disables the network for a child process and an apparmor profile that allows it to do so. Then call that app from bitbake.
That sounds a lot better than asking user's 100's permissions they don't understand through a GUI (as android does), as they will just click yes else the app won't work. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2056555 Title: Allow bitbake to create user namespace To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/apparmor/+bug/2056555/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs