Hi Ben,

since the libvirt-qemu apparmor policy is applied to every guest, we
would prefer to minimize the access granted if possible.  Can you show
examples of the denials you've seen?  Is there a more limited set of
access rules we could use, or is everything under /proc/device-tree
really needed?

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1006149

Title:
  PowerPC needs access to /proc/device-tree/ in apparmor perms

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/libvirt/+bug/1006149/+subscriptions

-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to