]> git.ipfire.org Git - thirdparty/libvirt.git/commit
docs: add a kbase explaining security protections for QEMU passthrough
authorDaniel P. Berrangé <berrange@redhat.com>
Thu, 6 Feb 2020 12:46:10 +0000 (12:46 +0000)
committerDaniel P. Berrangé <berrange@redhat.com>
Mon, 24 Feb 2020 12:52:24 +0000 (12:52 +0000)
commit958d6ebe537accf700f3fa1d0b685917cd347ddf
tree5b4d8b5535dd1f4d681b397f5c19d6a72da97885
parent8400b6c1983dd1e4504fe19d3421fff0e5866091
docs: add a kbase explaining security protections for QEMU passthrough

When using command line passthrough users will often trip up over the
security protections like SELinux, DAC, namespaces, etc which will
deny access to files they are passing. This document explains the
various protections and how to deal with their policy, and/or how
to disable them.

Reviewed-by: Kashyap Chamarthy <kchamart@redhat.com>
Reviewed-by: Ján Tomko <jtomko@redhat.com>
Signed-off-by: Daniel P. Berrangé <berrange@redhat.com>
docs/kbase.html.in
docs/kbase/qemu-passthrough-security.rst [new file with mode: 0644]