Bug#688179: [Pkg-libvirt-maintainers] Bug#688179: libvirt: Please enable selinux security driver

2014-01-27 Thread Guido Günther
clone 688179 -1 rettitle -1 LXC selinux support not working reopen -1 thanks Hi, On Sun, Jan 26, 2014 at 10:07:24PM +0100, Mateusz Matuszkowiak wrote: Hello again, I did some digging lately and I see that libvirtd won't start due to missing /etc/selinux/default/contexts/lxc_contexts file,

Bug#688179: libvirt: Please enable selinux security driver

2014-01-26 Thread Mateusz Matuszkowiak
Hello again, I did some digging lately and I see that libvirtd won't start due to missing /etc/selinux/default/contexts/lxc_contexts file, which is provided by refpolicy in latest Fedora with a content as follows: - process = system_u:system_r:svirt_lxc_net_t:s0 content =

Bug#688179: libvirt: Please enable selinux security driver

2014-01-14 Thread Mateusz Matuszkowiak
Hello, Trying to confirm that selinux driver is working on jessie but so far without luck: 2014-01-14 23:10:23.945+: 13996: info : libvirt version: 1.2.0 2014-01-14 23:10:23.945+: 13996: error : virSecurityDriverLookup:78 : unsupported configuration: Security driver selinux not enabled

Bug#688179: libvirt: Please enable selinux security driver

2014-01-05 Thread Guido Günther
On Thu, Jan 02, 2014 at 02:09:13AM +0100, Laurent Bigonville wrote: Hi, Looks like my patch was missing a bit as the auto-detection is not working as expected on machine that are not running selinux. --with-selinux-mount=/sys/fs/selinux should be passed to the configure. Quickly looking

Bug#688179: libvirt: Please enable selinux security driver

2014-01-01 Thread Laurent Bigonville
Hi, Looks like my patch was missing a bit as the auto-detection is not working as expected on machine that are not running selinux. --with-selinux-mount=/sys/fs/selinux should be passed to the configure. Quickly looking at the code it only affect LXC containers. /selinux is gone now sid and

Bug#688179: [Pkg-libvirt-maintainers] Bug#688179: libvirt: Please enable selinux security driver

2013-12-28 Thread Guido Günther
Hi, On Thu, Dec 26, 2013 at 10:50:47PM +0100, Laurent Bigonville wrote: Le Thu, 26 Dec 2013 22:04:07 +0100, Guido Günther a...@sigxcpu.org a écrit : On Thu, Dec 26, 2013 at 04:36:52PM +0100, Laurent Bigonville wrote: tag 688179 + patch thanks Hi, Please apply the attached

Bug#688179: libvirt: Please enable selinux security driver

2013-12-26 Thread Laurent Bigonville
tag 688179 + patch thanks Hi, Please apply the attached patch. I've just tested again and the VM's (using qemu) are starting properly and run in the expected context. Cheers, Laurent Bigonvillediff -Nru libvirt-1.2.0/debian/control libvirt-1.2.0/debian/control --- libvirt-1.2.0/debian/control

Bug#688179: [Pkg-libvirt-maintainers] Bug#688179: libvirt: Please enable selinux security driver

2013-12-26 Thread Guido Günther
On Thu, Dec 26, 2013 at 04:36:52PM +0100, Laurent Bigonville wrote: tag 688179 + patch thanks Hi, Please apply the attached patch. I've just tested again and the VM's (using qemu) are starting properly and run in the expected context. The main reason for not enabling this upfront was

Bug#688179: [Pkg-libvirt-maintainers] Bug#688179: libvirt: Please enable selinux security driver

2013-12-26 Thread Laurent Bigonville
Le Thu, 26 Dec 2013 22:04:07 +0100, Guido Günther a...@sigxcpu.org a écrit : On Thu, Dec 26, 2013 at 04:36:52PM +0100, Laurent Bigonville wrote: tag 688179 + patch thanks Hi, Please apply the attached patch. I've just tested again and the VM's (using qemu) are starting

Bug#688179: libvirt: Please enable selinux security driver

2013-12-15 Thread Laurent Bigonville
Package: src:libvirt Followup-For: Bug #688179 Hi, I've just uploaded repolicy 2:2.20131214-1 that is now shipping the appconfig file for libvirt. Even if the policy is not 100% working in enforcing mode, /etc/selinux/default/contexts/virtual_domain_context is now shipped in the policy package

Bug#688179: libvirt: Please enable selinux security driver

2012-09-20 Thread Laurent Bigonville
Le Thu, 20 Sep 2012 07:30:01 +0200, Guido Günther a...@sigxcpu.org a écrit : Hi Laurent, Hey, Somebody with interest in SELinux would need to fix up the necessary policies (as you noted). Are you in any way interested to do this? I'd be happy to do so but I'm lacking the time for any

Bug#688179: libvirt: Please enable selinux security driver

2012-09-19 Thread Laurent Bigonville
Source: libvirt Version: 0.9.12-5 Severity: wishlist Hi, Could you please enable the selinux security driver on libvirt compiled on linux. This bug is more a reminder bug. This shouldn't be implemented until #559356 is fixed. Cheers Laurent Bigonville -- System Information: Debian Release:

Bug#688179: [Pkg-libvirt-maintainers] Bug#688179: libvirt: Please enable selinux security driver

2012-09-19 Thread Guido Günther
Hi Laurent, On Thu, Sep 20, 2012 at 12:52:20AM +0200, Laurent Bigonville wrote: Source: libvirt Version: 0.9.12-5 Severity: wishlist Hi, Could you please enable the selinux security driver on libvirt compiled on linux. This bug is more a reminder bug. This shouldn't be implemented