{
  "id": 13597629,
  "title": "Rootful Podman restarts a --uidmap container once on an AppArmor host, then gives up",
  "url": "https://urgent.news/2026/10/11/rootful-podman-restarts-a-uidmap-container-once-on-an-apparmor-host",
  "topic": "tech",
  "section": "Tech",
  "published": "2026-10-11T01:09:12.000Z",
  "source": {
    "name": "Dev.to",
    "slug": "dev-to",
    "url": "https://dev.to/homelabpm/rootful-podman-restarts-a-uidmap-container-once-on-an-apparmor-host-then-gives-up-57nj"
  },
  "original_language": "en",
  "account": "Podman, when run with root privileges, will only restart a container with its own user and group ID mappings (uidmap / gidmap) once on a host that has AppArmor enabled. Once restarted, the container will remain in an exited state even if it exits again. This behavior can be observed in the container's event log, which will show a \"died\" message followed by a \"restart\" message, and then nothing further, with the restart count stopping at 1. The process responsible for restarting the container, podman container cleanup, fails with a profile specified, but AppArmor is disabled on the host. The error is only logged if the container was created with podman --syslog. The issue has been reported upstream as podman-container-tools/podman#29925.",
  "summary": "TL;DR : On a host with AppArmor enabled, a rootful Podman container that has its own ID mapping ( --uidmap / --gidmap ) and a restart policy is restarted once at most. When it exits the second time it stays exited . podman events shows died , restart , and then nothing, and RestartCount stops at 1. The process that should restart it, podman container cleanup , fails with profile…",
  "key_points": [
    "Podman restarts container once with uidmap on AppArmor host",
    "Container remains exited after restart, count stops at 1",
    "Issue reported upstream as podman-container-tools/podman#29925"
  ],
  "editors_take": "This limitation in Podman's behavior on AppArmor-enabled hosts means containers with custom user and group ID mappings may not automatically restart as expected after exiting.",
  "illustration": null,
  "coverage": {
    "outlets": 1,
    "also_reported_by": []
  },
  "ai_generated": true,
  "disclaimer": "Summaries, key points and the editor’s take are written by software from other outlets’ reporting and may contain errors — always check the linked original."
}