On Fri, Apr 05, 2013 at 10:05:59AM -0400, Stefan Berger wrote:
> When a VM with a TPM passthrough device is started, the audit daemon
> logs the following type of message:
>
> type=VIRT_RESOURCE msg=audit(1365170222.460:3378): pid=16382 uid=0
> auid=4294967295 ses=4294967295 subj=system_u:system_
When a VM with a TPM passthrough device is started, the audit daemon
logs the following type of message:
type=VIRT_RESOURCE msg=audit(1365170222.460:3378): pid=16382 uid=0
auid=4294967295 ses=4294967295 subj=system_u:system_r:virtd_t:s0-s0:c0.c1023
msg='virt=kvm resrc=dev reason=start vm="TPM-PT