• J
    update apparmor security driver for new udev paths · 3d732040
    Jamie Strandboge 提交于
    In the Ubuntu development release we recently got a new udev that
    moves /var/run to /run, /var/lock to /run/lock and /dev/shm to /run/shm.
    This change in udev requires updating the apparmor security driver in
    libvirt[1].
    
    Attached is a patch that:
     * adjusts src/security/virt-aa-helper.c to allow both
    LOCALSTATEDIR/run/libvirt/**/%s.pid and /run/libvirt/**/%s.pid. While
    the profile is not as precise, LOCALSTATEDIR/run/ is typically a symlink
    to /run/ anyway, so there is no additional access (remember that
    apparmor resolves symlinks, which is why this is still required even
    if /var/run points to /run).
     * adjusts example/apparmor/libvirt-qemu paths for /dev/shm
    
    [1]https://launchpad.net/bugs/810270
    
    --
    Jamie Strandboge             | http://www.canonical.com
    3d732040
virt-aa-helper.c 33.9 KB