James Morris wrote:
> On Fri, 20 Jul 2007, Daniel P. Berrange wrote:
>
>   
>> It could be - if your put the policy at the control API layer instead of
>> in QEMU itself.
>>     
>
> Then you can bypass MAC security by invoking qemu directly.
>   

You can bypass MAC security by writing your own binary that uses the KVM 
kernel interfaces.

Regards,

Anthony Liguori

> - James
>   


-------------------------------------------------------------------------
This SF.net email is sponsored by: Microsoft
Defy all challenges. Microsoft(R) Visual Studio 2005.
http://clk.atdmt.com/MRT/go/vse0120000070mrt/direct/01/
_______________________________________________
kvm-devel mailing list
kvm-devel@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/kvm-devel

Reply via email to