mirror of
https://gitlab.com/libvirt/libvirt.git
synced 2025-01-03 11:35:19 +00:00
security: Add support for SUSE edk2 firmware paths
SUSE installs edk2 firmwares for both x86_64 and aarch64 in /usr/share/qemu. Add support for this path in virt-aa-helper and allow locking files within the path in the libvirt qemu abstraction. Signed-off-by: Jim Fehlig <jfehlig@suse.com> Reviewed-by: Michal Privoznik <mprivozn@redhat.com> Reviewed-by: Andrea Bolognani <abologna@redhat.com>
This commit is contained in:
parent
6ecd218109
commit
b94a82ce9a
@ -91,7 +91,7 @@
|
||||
/usr/share/proll/** r,
|
||||
/usr/share/qemu-efi/** r,
|
||||
/usr/share/qemu-kvm/** r,
|
||||
/usr/share/qemu/** r,
|
||||
/usr/share/qemu/** rk,
|
||||
/usr/share/seabios/** r,
|
||||
/usr/share/sgabios/** r,
|
||||
/usr/share/slof/** r,
|
||||
|
@ -481,6 +481,7 @@ valid_path(const char *path, const bool readonly)
|
||||
"/usr/share/AAVMF/", /* for AAVMF images */
|
||||
"/usr/share/qemu-efi/", /* for AAVMF images */
|
||||
"/usr/share/qemu-efi-aarch64/", /* for AAVMF images */
|
||||
"/usr/share/qemu/", /* SUSE path for OVMF and AAVMF images */
|
||||
"/usr/lib/u-boot/", /* u-boot loaders for qemu */
|
||||
"/usr/lib/riscv64-linux-gnu/opensbi" /* RISC-V SBI implementation */
|
||||
};
|
||||
|
Loading…
Reference in New Issue
Block a user