[Bug 480478] Re: libvirt's apparmor profile doesn't allow execution of /usr/lib/libvirt/libvirt_lxc

Chris Jones chris.jones at canonical.com
Thu Nov 19 21:32:39 GMT 2009


I'm brand new to lxc and apparmor, but I wonder if this is sufficient:

=== modified file 'apparmor.d/usr.sbin.libvirtd'
--- apparmor.d/usr.sbin.libvirtd	2009-11-19 21:10:26 +0000
+++ apparmor.d/usr.sbin.libvirtd	2009-11-19 21:26:21 +0000
@@ -32,6 +32,7 @@
   /sbin/* Ux,
   /usr/bin/* Ux,
   /usr/sbin/* Ux,
+  /usr/lib/libvirt/* Ux,
 
   # force the use of virt-aa-helper
   audit deny /sbin/apparmor_parser rwxl,

-- 
libvirt's apparmor profile doesn't allow execution of /usr/lib/libvirt/libvirt_lxc
https://bugs.launchpad.net/bugs/480478
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to libvirt in ubuntu.



More information about the Ubuntu-server-bugs mailing list