Re: [libvirt PATCH 01/13] security: add SELinux policy for virt

2021-08-26 Thread Vit Mojzis
On 20. 08. 21 13:33, Daniel P. Berrangé wrote: On Thu, Aug 19, 2021 at 05:23:48PM +0200, Vit Mojzis wrote: On 10. 08. 21 18:35, Daniel P. Berrangé wrote: On Tue, Aug 10, 2021 at 10:39:23AM +0200, Pavel Hrdina wrote: On Fri, Aug 06, 2021 at 06:47:58PM +0100, Daniel P. Berrangé wrote: From: N

Re: [libvirt PATCH 01/13] security: add SELinux policy for virt

2021-08-20 Thread Daniel P . Berrangé
On Thu, Aug 19, 2021 at 05:23:48PM +0200, Vit Mojzis wrote: > > On 10. 08. 21 18:35, Daniel P. Berrangé wrote: > > On Tue, Aug 10, 2021 at 10:39:23AM +0200, Pavel Hrdina wrote: > > > On Fri, Aug 06, 2021 at 06:47:58PM +0100, Daniel P. Berrangé wrote: > > > > From: Nikola Knazekova > > > > > > >

Re: [libvirt PATCH 01/13] security: add SELinux policy for virt

2021-08-19 Thread Vit Mojzis
On 10. 08. 21 18:35, Daniel P. Berrangé wrote: On Tue, Aug 10, 2021 at 10:39:23AM +0200, Pavel Hrdina wrote: On Fri, Aug 06, 2021 at 06:47:58PM +0100, Daniel P. Berrangé wrote: From: Nikola Knazekova SELinux policy was created for: Hypervisor drivers: - virtqemud (QEMU/KVM) - virtlxcd (LXC

Re: [libvirt PATCH 01/13] security: add SELinux policy for virt

2021-08-10 Thread Daniel P . Berrangé
On Tue, Aug 10, 2021 at 10:39:23AM +0200, Pavel Hrdina wrote: > On Fri, Aug 06, 2021 at 06:47:58PM +0100, Daniel P. Berrangé wrote: > > From: Nikola Knazekova > > > > SELinux policy was created for: > > > > Hypervisor drivers: > > - virtqemud (QEMU/KVM) > > - virtlxcd (LXC) > > - virtvboxd (Virt

Re: [libvirt PATCH 01/13] security: add SELinux policy for virt

2021-08-10 Thread Pavel Hrdina
On Fri, Aug 06, 2021 at 06:47:58PM +0100, Daniel P. Berrangé wrote: > From: Nikola Knazekova > > SELinux policy was created for: > > Hypervisor drivers: > - virtqemud (QEMU/KVM) > - virtlxcd (LXC) > - virtvboxd (VirtualBox) > > Secondary drivers: > - virtstoraged (host storage mgmt) > - virtnet

[libvirt PATCH 01/13] security: add SELinux policy for virt

2021-08-06 Thread Daniel P . Berrangé
From: Nikola Knazekova SELinux policy was created for: Hypervisor drivers: - virtqemud (QEMU/KVM) - virtlxcd (LXC) - virtvboxd (VirtualBox) Secondary drivers: - virtstoraged (host storage mgmt) - virtnetworkd (virtual network mgmt) - virtinterface (network interface mgmt) - virtnodedevd (physic

[PATCH v5 1/3] Add SELinux policy for virt

2021-07-08 Thread Vit Mojzis
From: Nikola Knazekova SELinux policy was created for: Hypervisor drivers: - virtqemud (QEMU/KVM) - virtlxcd (LXC) - virtvboxd (VirtualBox) Secondary drivers: - virtstoraged (host storage mgmt) - virtnetworkd (virtual network mgmt) - virtinterface (network interface mgmt) - virtnodedevd (physic

Re: [PATCH v2] Add SELinux policy for virt

2021-06-18 Thread Vit Mojzis
On 24. 05. 21 14:36, Daniel P. Berrangé wrote: On Mon, May 24, 2021 at 05:25:19AM -0700, Andrea Bolognani wrote: On Fri, May 21, 2021 at 03:37:00PM +0100, Daniel P. Berrangé wrote: On Fri, May 21, 2021 at 04:22:59PM +0200, Vit Mojzis wrote: On 4/30/21 10:28 PM, Vit Mojzis wrote: On 4/26/21

Re: [PATCH v2] Add SELinux policy for virt

2021-05-24 Thread Daniel P . Berrangé
On Mon, May 24, 2021 at 05:25:19AM -0700, Andrea Bolognani wrote: > On Fri, May 21, 2021 at 03:37:00PM +0100, Daniel P. Berrangé wrote: > > On Fri, May 21, 2021 at 04:22:59PM +0200, Vit Mojzis wrote: > > > On 4/30/21 10:28 PM, Vit Mojzis wrote: > > > > On 4/26/21 7:31 PM, Daniel P. Berrangé wrote:

Re: [PATCH v2] Add SELinux policy for virt

2021-05-24 Thread Andrea Bolognani
On Fri, May 21, 2021 at 03:37:00PM +0100, Daniel P. Berrangé wrote: > On Fri, May 21, 2021 at 04:22:59PM +0200, Vit Mojzis wrote: > > On 4/30/21 10:28 PM, Vit Mojzis wrote: > > > On 4/26/21 7:31 PM, Daniel P. Berrangé wrote: > > > > On Wed, Apr 07, 2021 at 06:14:58AM -0700, Vit Mojzis wrote: > > >

Re: [PATCH v2] Add SELinux policy for virt

2021-05-21 Thread Daniel P . Berrangé
On Fri, May 21, 2021 at 04:22:59PM +0200, Vit Mojzis wrote: > > On 4/30/21 10:28 PM, Vit Mojzis wrote: > > > > On 4/26/21 7:31 PM, Daniel P. Berrangé wrote: > > > On Wed, Apr 07, 2021 at 06:14:58AM -0700, Vit Mojzis wrote: > > > > Sorry for the long delay. This is our first request to ship a > >

Re: [PATCH v2] Add SELinux policy for virt

2021-05-21 Thread Vit Mojzis
On 4/30/21 10:28 PM, Vit Mojzis wrote: On 4/26/21 7:31 PM, Daniel P. Berrangé wrote: On Wed, Apr 07, 2021 at 06:14:58AM -0700, Vit Mojzis wrote: Sorry for the long delay. This is our first request to ship a policy for multiple selinux stores (targeted, mls and minimum). Changes: * Replace

Re: [PATCH v2 1/4] Add SELinux policy for virt

2021-05-21 Thread Vit Mojzis
On 4/28/21 11:29 AM, Daniel P. Berrangé wrote: On Wed, Apr 28, 2021 at 10:48:09AM +0200, Vit Mojzis wrote: On 4/26/21 7:39 PM, Daniel P. Berrangé wrote: On Wed, Apr 07, 2021 at 07:08:34AM -0700, Vit Mojzis wrote: From: Nikola Knazekova SELinux policy was created for: Hypervisor drivers: -

[PATCH v4 1/3] Add SELinux policy for virt

2021-04-30 Thread Vit Mojzis
From: Nikola Knazekova SELinux policy was created for: Hypervisor drivers: - virtqemud (QEMU/KVM) - virtlxcd (LXC) - virtvboxd (VirtualBox) Secondary drivers: - virtstoraged (host storage mgmt) - virtnetworkd (virtual network mgmt) - virtinterface (network interface mgmt) - virtnodedevd (physic

Re: [PATCH v2] Add SELinux policy for virt

2021-04-30 Thread Vit Mojzis
On 4/26/21 7:31 PM, Daniel P. Berrangé wrote: On Wed, Apr 07, 2021 at 06:14:58AM -0700, Vit Mojzis wrote: Sorry for the long delay. This is our first request to ship a policy for multiple selinux stores (targeted, mls and minimum). Changes: * Replace all selinux-policy-%{policytype} dependenc

Re: [PATCH v2 1/4] Add SELinux policy for virt

2021-04-28 Thread Daniel P . Berrangé
On Wed, Apr 28, 2021 at 10:48:09AM +0200, Vit Mojzis wrote: > > On 4/26/21 7:39 PM, Daniel P. Berrangé wrote: > > On Wed, Apr 07, 2021 at 07:08:34AM -0700, Vit Mojzis wrote: > > > From: Nikola Knazekova > > > > > > SELinux policy was created for: > > > > > > Hypervisor drivers: > > > - virtqemu

Re: [PATCH v2] Add SELinux policy for virt

2021-04-28 Thread Daniel P . Berrangé
On Wed, Apr 28, 2021 at 10:54:58AM +0200, Vit Mojzis wrote: > > On 4/26/21 7:03 PM, Daniel P. Berrangé wrote: > > On Wed, Apr 07, 2021 at 06:14:58AM -0700, Vit Mojzis wrote: > > > Sorry for the long delay. This is our first request to ship a policy for > > > multiple selinux stores (targeted, mls

Re: [PATCH v2] Add SELinux policy for virt

2021-04-28 Thread Vit Mojzis
On 4/26/21 7:03 PM, Daniel P. Berrangé wrote: On Wed, Apr 07, 2021 at 06:14:58AM -0700, Vit Mojzis wrote: Sorry for the long delay. This is our first request to ship a policy for multiple selinux stores (targeted, mls and minimum). Changes: * Replace all selinux-policy-%{policytype} dependenc

Re: [PATCH v2 1/4] Add SELinux policy for virt

2021-04-28 Thread Vit Mojzis
On 4/26/21 7:39 PM, Daniel P. Berrangé wrote: On Wed, Apr 07, 2021 at 07:08:34AM -0700, Vit Mojzis wrote: From: Nikola Knazekova SELinux policy was created for: Hypervisor drivers: - virtqemud (QEMU/KVM) - virtlxcd (LXC) - virtvboxd (VirtualBox) Secondary drivers: - virtstoraged (host stor

[PATCH v3 1/3] Add SELinux policy for virt

2021-04-28 Thread Vit Mojzis
From: Nikola Knazekova SELinux policy was created for: Hypervisor drivers: - virtqemud (QEMU/KVM) - virtlxcd (LXC) - virtvboxd (VirtualBox) Secondary drivers: - virtstoraged (host storage mgmt) - virtnetworkd (virtual network mgmt) - virtinterface (network interface mgmt) - virtnodedevd (physic

Re: [PATCH v2 1/4] Add SELinux policy for virt

2021-04-26 Thread Daniel P . Berrangé
On Wed, Apr 07, 2021 at 07:08:34AM -0700, Vit Mojzis wrote: > From: Nikola Knazekova > > SELinux policy was created for: > > Hypervisor drivers: > - virtqemud (QEMU/KVM) > - virtlxcd (LXC) > - virtvboxd (VirtualBox) > > Secondary drivers: > - virtstoraged (host storage mgmt) > - virtnetworkd (v

Re: [PATCH v2] Add SELinux policy for virt

2021-04-26 Thread Daniel P . Berrangé
On Wed, Apr 07, 2021 at 06:14:58AM -0700, Vit Mojzis wrote: > Sorry for the long delay. This is our first request to ship a policy for > multiple selinux stores (targeted, mls and minimum). > > Changes: > * Replace all selinux-policy-%{policytype} dependencies with > selinux-policy-base > * Add G

Re: [PATCH v2 1/4] Add SELinux policy for virt

2021-04-26 Thread Daniel P . Berrangé
On Wed, Apr 07, 2021 at 07:08:34AM -0700, Vit Mojzis wrote: > From: Nikola Knazekova > > SELinux policy was created for: > > Hypervisor drivers: > - virtqemud (QEMU/KVM) > - virtlxcd (LXC) > - virtvboxd (VirtualBox) > > Secondary drivers: > - virtstoraged (host storage mgmt) > - virtnetworkd (v

Re: [PATCH v2] Add SELinux policy for virt

2021-04-26 Thread Daniel P . Berrangé
On Wed, Apr 07, 2021 at 06:14:58AM -0700, Vit Mojzis wrote: > Sorry for the long delay. This is our first request to ship a policy for > multiple selinux stores (targeted, mls and minimum). > > Changes: > * Replace all selinux-policy-%{policytype} dependencies with > selinux-policy-base > * Add G

[PATCH v2 1/4] Add SELinux policy for virt

2021-04-07 Thread Vit Mojzis
From: Nikola Knazekova SELinux policy was created for: Hypervisor drivers: - virtqemud (QEMU/KVM) - virtlxcd (LXC) - virtvboxd (VirtualBox) Secondary drivers: - virtstoraged (host storage mgmt) - virtnetworkd (virtual network mgmt) - virtinterface (network interface mgmt) - virtnodedevd (physic

[PATCH v2] Add SELinux policy for virt

2021-04-07 Thread Vit Mojzis
Sorry for the long delay. This is our first request to ship a policy for multiple selinux stores (targeted, mls and minimum). Changes: * Replace all selinux-policy-%{policytype} dependencies with selinux-policy-base * Add Ghost files representing installed policy modules in all policy stores * Rew

[PATCH 1/3] Add SELinux policy for virt

2021-03-10 Thread Nikola Knazekova
SELinux policy was created for: Hypervisor drivers: - virtqemud (QEMU/KVM) - virtlxcd (LXC) - virtvboxd (VirtualBox) Secondary drivers: - virtstoraged (host storage mgmt) - virtnetworkd (virtual network mgmt) - virtinterface (network interface mgmt) - virtnodedevd (physical device mgmt) - virtsec

Add SELinux policy for Virt

2021-03-10 Thread Nikola Knazekova
Hi, I created SELinux policy for Libvirt drivers, as part of Decentralized SELinux Policy (DSP) project. DSP guidelines is available: https://fedoraproject.org/wiki/SELinux/IndependentPolicy Discussion about the first version of SELinux policy for Libvirt is available on gitlab: https://gitl