Public bug reported:

My KVM guests are using LVM partitions as storage devices and this shows
in the log every time a VM is booted :

Jan  4 14:04:12 simon-laptop kernel: [17725.344930] type=1400
audit(1325703852.481:914): apparmor="DENIED" operation="open"
parent=1684 profile="/usr/lib/libvirt/virt-aa-helper" name="/dev/dm-1"
pid=17488 comm="virt-aa-helper" requested_mask="r" denied_mask="r"
fsuid=0 ouid=0

This denial does not prevent the guest from function properly but it
generates some noise in the logs (and logcheck notifications).

$ lsb_release -rd
Description:    Ubuntu 11.10
Release:        11.10

$ apt-cache policy libvirt-bin
libvirt-bin:
  Installed: 0.9.2-4ubuntu15.1
  Candidate: 0.9.2-4ubuntu15.1
  Version table:
 *** 0.9.2-4ubuntu15.1 0
        500 http://archive.ubuntu.com/ubuntu/ oneiric-updates/main amd64 
Packages
        100 /var/lib/dpkg/status
     0.9.2-4ubuntu15 0
        500 http://archive.ubuntu.com/ubuntu/ oneiric/main amd64 Packages

ProblemType: Bug
DistroRelease: Ubuntu 11.10
Package: libvirt-bin 0.9.2-4ubuntu15.1
ProcVersionSignature: Ubuntu 3.0.0-15.25-generic 3.0.13
Uname: Linux 3.0.0-15-generic x86_64
ApportVersion: 1.23-0ubuntu4
Architecture: amd64
Date: Wed Jan  4 15:04:03 2012
InstallationMedia: Ubuntu 11.10 "Oneiric Ocelot" - Release amd64 (20111011)
ProcEnviron:
 LANGUAGE=en_CA:en
 PATH=(custom, no user)
 LANG=en_CA.UTF-8
 SHELL=/bin/bash
SourcePackage: libvirt
UpgradeStatus: No upgrade log present (probably fresh install)

** Affects: libvirt (Ubuntu)
     Importance: Undecided
         Status: New


** Tags: amd64 apport-bug oneiric running-unity

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/912007

Title:
  Apparmor profile denies access to /dev/dm-* for guests using LVM
  partitions storage

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/libvirt/+bug/912007/+subscriptions

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to