[Bug 632696] Re: libvirt won't start a VM with serial or console when apparmor is enabled

Serge Hallyn 632696 at bugs.launchpad.net
Wed Sep 8 17:35:17 BST 2010


Quoting Jamie Strandboge (jamie at ubuntu.com):
> Serge, do you still have the following in your /etc/apparmor.d/abstractions/libvirt-qemu:
>   /usr/lib/pt_chown ix,
>   owner @{PROC}/[0-9]*/fd/ r,
>   owner @{PROC}/[0-9]*/fd/3 r,

Right, I pulled those out since they weren't working anyway.

> I didn't see it in your attached libvirt-qemu file either, so I am
> slightly confused. Updating that file will require a full shutdown of
> the guest with the profile unloaded on guest shutdown (use 'sudo aa-
> status' to see). If you do have the above, then that could be why you
> aren't seeing the issue today (though, like I said, I could not
> reproduce).

When I added those lines, I then shut down the VMs, and did

	/etc/init.d/apparmor restart
	restart libvirt-bin

and then restarted the VMs.  So pretty sure I was testing the
rules.

-- 
libvirt won't start a VM with serial or console when apparmor is enabled
https://bugs.launchpad.net/bugs/632696
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to libvirt in ubuntu.



More information about the Ubuntu-server-bugs mailing list