Re: [PATCH V2 3/4] Apparmor: Allow reading libnl's classid file

2021-06-24 Thread Jim Fehlig
On 6/23/21 11:43 PM, Christian Ehrhardt wrote: On Wed, Jun 23, 2021 at 1:28 AM Jim Fehlig wrote: I noticed the following denial messages from apparmor in audit.log when starting confined VMs via the QEMU driver type=AVC msg=audit(1623864006.370:837): apparmor="DENIED" operation="open" \

Re: [PATCH V2 3/4] Apparmor: Allow reading libnl's classid file

2021-06-24 Thread Christian Ehrhardt
On Wed, Jun 23, 2021 at 1:28 AM Jim Fehlig wrote: > > I noticed the following denial messages from apparmor in audit.log when > starting confined VMs via the QEMU driver > > type=AVC msg=audit(1623864006.370:837): apparmor="DENIED" operation="open" \ > profile="virt-aa-helper"

[PATCH V2 3/4] Apparmor: Allow reading libnl's classid file

2021-06-22 Thread Jim Fehlig
I noticed the following denial messages from apparmor in audit.log when starting confined VMs via the QEMU driver type=AVC msg=audit(1623864006.370:837): apparmor="DENIED" operation="open" \ profile="virt-aa-helper" name="/etc/libnl/classid" pid=11265 \ comm="virt-aa-helper" requested_mask="r"