Podman bug: --uidmap container restarts only once on AppArmor hosts
On AppArmor-enabled hosts, a rootful Podman container with its own ID mapping (--uidmap/--gidmap) and a restart policy restarts at most once, then stays exited. The podman container cleanup process fails with "profile containers-default-0.62.2 specified but AppArmor is disabled" even though AppArmor is enabled. Reproduced on Debian 13 with Podman 5.4.2 and upstream on Ubuntu 26.04 with 5.7.0 and 6.1.3.
- RestartCount stops at 1; podman events show died and restart, then nothing
- The error is logged only if the container was created with podman --syslog
- Workaround: a Quadlet unit with UIDMap and Restart=always restarts reliably via systemd
- Without the mapping or with apparmor=unconfined the container keeps restarting
Read next
Software