Il 06/11/2013 21:36, Serge Hallyn ha scritto:
> Interestingly, /etc/apparmor.d/libvirt/libvirt-$uuid.files does have an
> entry allowing rw to the destination path:
>
>    "/mnt/x/x.qcow2" rw,
>
> but still I get
>
> Nov  6 21:29:47 kvm-s1 kernel: [ 1432.501141] type=1400 
> audit(1383769787.515:60): apparmor="STATUS" operation="profile_replace" 
> parent=1382 profile="unconfined" 
> name="libvirt-5d349701-09af-42be-b1b4-ef4b31de5792" pid=1383 
> comm="apparmor_parser"
> Nov  6 21:29:47 kvm-s1 kernel: [ 1432.502753] type=1400 
> audit(1383769787.515:61): apparmor="DENIED" operation="open" parent=1 
> profile="libvirt-5d349701-09af-42be-b1b4-ef4b31de5792" name="/mnt/x/x.qcow2" 
> pid=1285 comm="qemu-system-x86" requested_mask="r" denied_mask="r" fsuid=107 
> ouid=107
>

In fact I've tried to manually add original disk image path with rw 
permission and enforce apparmor reload, but system seems to ignore that.
I've compared apparmor profiles with 13.04, but they hadn't change 
(except for a few lines related to direct USB device support).

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1248577

Title:
  libvirt with securty_driver="apparmor" (default settings) cannot do
  live blockcopy of devices due to permission denied error

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/libvirt/+bug/1248577/+subscriptions

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to