Re: [PATCH 1/2] apparmor: allow adding permanent per guest rules

2020-08-13 Thread Christian Ehrhardt
On Fri, Aug 7, 2020 at 6:14 PM Daniel P. Berrangé wrote: > On Fri, Aug 07, 2020 at 12:21:19PM +0200, Christian Ehrhardt wrote: > > The design of apparmor in libvirt always had a way to define custom > > per-guest rules as described in docs/drvqemu.html and [1]. > > > > A fix meant to clean the

Re: [PATCH 1/2] apparmor: allow adding permanent per guest rules

2020-08-07 Thread Daniel P . Berrangé
On Fri, Aug 07, 2020 at 12:21:19PM +0200, Christian Ehrhardt wrote: > The design of apparmor in libvirt always had a way to define custom > per-guest rules as described in docs/drvqemu.html and [1]. > > A fix meant to clean the profiles after guest shutdown was a bit > overzealous and

[PATCH 1/2] apparmor: allow adding permanent per guest rules

2020-08-07 Thread Christian Ehrhardt
The design of apparmor in libvirt always had a way to define custom per-guest rules as described in docs/drvqemu.html and [1]. A fix meant to clean the profiles after guest shutdown was a bit overzealous and accidentially removed this important admin feature as well. Therefore reduce the