clone 688179 -1
rettitle -1 LXC selinux support not working
reopen -1
thanks
Hi,
On Sun, Jan 26, 2014 at 10:07:24PM +0100, Mateusz Matuszkowiak wrote:
Hello again,
I did some digging lately and I see that libvirtd won't start due to
missing /etc/selinux/default/contexts/lxc_contexts file,
Hello again,
I did some digging lately and I see that libvirtd won't start due to
missing /etc/selinux/default/contexts/lxc_contexts file, which is
provided by refpolicy in latest Fedora with a content as follows:
-
process = system_u:system_r:svirt_lxc_net_t:s0
content =
Hello,
Trying to confirm that selinux driver is working on jessie but so far
without luck:
2014-01-14 23:10:23.945+: 13996: info : libvirt version: 1.2.0
2014-01-14 23:10:23.945+: 13996: error : virSecurityDriverLookup:78 :
unsupported configuration: Security driver selinux not enabled
On Thu, Jan 02, 2014 at 02:09:13AM +0100, Laurent Bigonville wrote:
Hi,
Looks like my patch was missing a bit as the auto-detection is not
working as expected on machine that are not running selinux.
--with-selinux-mount=/sys/fs/selinux should be passed to the configure.
Quickly looking
Hi,
Looks like my patch was missing a bit as the auto-detection is not
working as expected on machine that are not running selinux.
--with-selinux-mount=/sys/fs/selinux should be passed to the configure.
Quickly looking at the code it only affect LXC containers.
/selinux is gone now sid and
Hi,
On Thu, Dec 26, 2013 at 10:50:47PM +0100, Laurent Bigonville wrote:
Le Thu, 26 Dec 2013 22:04:07 +0100,
Guido Günther a...@sigxcpu.org a écrit :
On Thu, Dec 26, 2013 at 04:36:52PM +0100, Laurent Bigonville wrote:
tag 688179 + patch
thanks
Hi,
Please apply the attached
tag 688179 + patch
thanks
Hi,
Please apply the attached patch.
I've just tested again and the VM's (using qemu) are starting properly
and run in the expected context.
Cheers,
Laurent Bigonvillediff -Nru libvirt-1.2.0/debian/control libvirt-1.2.0/debian/control
--- libvirt-1.2.0/debian/control
On Thu, Dec 26, 2013 at 04:36:52PM +0100, Laurent Bigonville wrote:
tag 688179 + patch
thanks
Hi,
Please apply the attached patch.
I've just tested again and the VM's (using qemu) are starting properly
and run in the expected context.
The main reason for not enabling this upfront was
Le Thu, 26 Dec 2013 22:04:07 +0100,
Guido Günther a...@sigxcpu.org a écrit :
On Thu, Dec 26, 2013 at 04:36:52PM +0100, Laurent Bigonville wrote:
tag 688179 + patch
thanks
Hi,
Please apply the attached patch.
I've just tested again and the VM's (using qemu) are starting
Package: src:libvirt
Followup-For: Bug #688179
Hi,
I've just uploaded repolicy 2:2.20131214-1 that is now shipping the
appconfig file for libvirt.
Even if the policy is not 100% working in enforcing mode,
/etc/selinux/default/contexts/virtual_domain_context is now shipped in
the policy package
Le Thu, 20 Sep 2012 07:30:01 +0200,
Guido Günther a...@sigxcpu.org a écrit :
Hi Laurent,
Hey,
Somebody with interest in SELinux would need to fix up the necessary
policies (as you noted). Are you in any way interested to do this? I'd
be happy to do so but I'm lacking the time for any
Source: libvirt
Version: 0.9.12-5
Severity: wishlist
Hi,
Could you please enable the selinux security driver on libvirt compiled
on linux.
This bug is more a reminder bug. This shouldn't be implemented until
#559356 is fixed.
Cheers
Laurent Bigonville
-- System Information:
Debian Release:
Hi Laurent,
On Thu, Sep 20, 2012 at 12:52:20AM +0200, Laurent Bigonville wrote:
Source: libvirt
Version: 0.9.12-5
Severity: wishlist
Hi,
Could you please enable the selinux security driver on libvirt compiled
on linux.
This bug is more a reminder bug. This shouldn't be implemented
13 matches
Mail list logo