]> git.ipfire.org Git - thirdparty/libvirt.git/commit
security: Add swtpm paths to the domain's AppArmor profile
authorStefan Berger <stefanb@linux.vnet.ibm.com>
Sat, 19 May 2018 03:33:46 +0000 (23:33 -0400)
committerStefan Berger <stefanb@linux.vnet.ibm.com>
Thu, 28 Jun 2018 10:50:43 +0000 (06:50 -0400)
commit43b0b4f83457fa24f0825118ba514abe4888ecdf
tree8f94fd00bacf570c6ba909aa39c8149dcd3ddf44
parentf8c65481d5baa279372bfa244c92527088ce70dd
security: Add swtpm paths to the domain's AppArmor profile

This patch extends the AppArmor domain profile with file paths
the swtpm accesses for state, log, pid, and socket files.

Both, QEMU and swtpm, use this AppArmor profile.

Signed-off-by: Stefan Berger <stefanb@linux.vnet.ibm.com>
Cc: Christian Ehrhardt <christian.ehrhardt@canonical.com>
examples/apparmor/libvirt-qemu
src/security/virt-aa-helper.c