Re: [libvirt] [PATCH v9 13/17] security: Add swtpm paths to the domain's AppArmor profile

2018-06-07 Thread Stefan Berger
On 06/04/2018 11:46 AM, Stefan Berger wrote: This patch extends the AppArmor domain profile with file paths the swtpm accesses for state, log, pid, and socket files. Both, QEMU and swtpm, use this AppArmor profile. Signed-off-by: Stefan Berger Cc: Christian Ehrhardt After the recent changes

[libvirt] [PATCH v9 13/17] security: Add swtpm paths to the domain's AppArmor profile

2018-06-04 Thread Stefan Berger
This patch extends the AppArmor domain profile with file paths the swtpm accesses for state, log, pid, and socket files. Both, QEMU and swtpm, use this AppArmor profile. Signed-off-by: Stefan Berger Cc: Christian Ehrhardt --- examples/apparmor/libvirt-qemu | 3 +++ src/security/virt-aa-helper