[libvirt] [PATCH v8 13/18] security: Add swtpm paths to the domain's AppArmor profile

Stefan Berger stefanb at linux.vnet.ibm.com
Sun Jun 3 14:26:07 UTC 2018


On 06/02/2018 09:32 AM, Ján Tomko wrote:
> On Thu, May 24, 2018 at 04:26:09PM -0400, Stefan Berger wrote:
>> This patch extends the AppArmor domain profile with file paths
>> the swtpm accesses for state, log, pid, and socket files.
>>
>> Both, QEMU and swtpm, use this AppArmor profile.
>>
>> Signed-off-by: Stefan Berger <stefanb at linux.vnet.ibm.com>
>> Cc: Christian Ehrhardt <christian.ehrhardt at canonical.com>
>> ---
>> examples/apparmor/libvirt-qemu |  3 +++
>> src/security/virt-aa-helper.c  | 24 ++++++++++++++++++++++++
>> 2 files changed, 27 insertions(+)
>>
>
> Reviewed-by: Ján Tomko <jtomko at redhat.com>
>
For this one I will have to post an update...
> Jano





More information about the libvir-list mailing list