[09:36] o/ [09:56] hi [09:56] It would be nice, if snapd could overlay mount directories. At least read-only. [09:57] sdhd-sascha: as in overlayfs? [09:57] sdhd-sascha: hey :) [09:57] E.g. mount /usr/share/fonts from snap A on snap B [09:57] yes [09:57] zyga: :) [09:58] sdhd-sascha: unfortunately we cannot use overlayfs because it doesn't support apparmor (or vice versa) [09:58] zyga: What does apparmor do or not do? [10:01] zyga: can't find any bug-report about overlayfs and apparmor. What's not working? [10:02] There are no LSM hooks in overlayfs that would make it work correctly with apparmor [10:02] I don’t know if there is a bug report about it but this is my understanding after discussing this topic with apparmor kernel developers [10:03] I just realized I am off today as well [10:03] I’ll make coffee and clean the kitchen a little [10:03] This end of year holiday is an excellent way to rest and reset [10:04] :) [10:05] Apparmor is almost entirely path based [10:05] I patched the last bug in sway-source in my repo. Now Xwayland starts inside strict sway :) The problem was, that sway want access to /dev/shm/wlroots-... [10:05] And overlayfs has some hooks that make it work with inode based LSMs like SELinux [10:06] zyga: thank you. [10:08] oh, didn't upload the current sway snapcraft.yaml, yet. [16:36] Bug #1857358 opened: Not yet operational on Fedora systems