libvirt/src
Daniel P. Berrange 8f680ad3b8 Basic framework for auditing integration
Integrate with libaudit.so for auditing of important operations.
libvirtd gains a couple of config entries for auditing. By
default it will enable auditing, if its enabled on the host.
It can be configured to force exit if auditing is disabled
on the host. It will can also send audit messages via libvirt
internal logging API

Places requiring audit reporting can use the VIR_AUDIT
macro to report data. This is a no-op unless auditing is
enabled

* autobuild.sh, mingw32-libvirt.spec.in: Disable audit
  on mingw
* configure.ac: Add check for libaudit
* daemon/libvirtd.aug, daemon/libvirtd.conf,
  daemon/test_libvirtd.aug, daemon/libvirtd.c: Add config
  options to enable auditing
* include/libvirt/virterror.h, src/util/virterror.c: Add
  VIR_FROM_AUDIT source
* libvirt.spec.in: Enable audit
* src/util/virtaudit.h, src/util/virtaudit.c: Simple internal
  API for auditing messages
2010-10-19 17:31:31 +01:00
..
conf vcpu: support maxvcpu in domain_conf 2010-10-19 10:05:51 -06:00
cpu cpu: Use vendor in baseline CPU only if all hosts use it 2010-10-14 09:36:54 +02:00
esx vcpu: support maxvcpu in domain_conf 2010-10-19 10:05:51 -06:00
interface Implement forgotten backend of virInterfaceIsActive() 2010-04-14 10:38:18 -04:00
lxc vcpu: define internal driver API 2010-10-19 10:00:47 -06:00
network bridge: Fix static-only DHCP configuration 2010-09-10 09:34:18 +02:00
node_device Don't fail on missing D-Bus 2010-10-13 14:47:19 +02:00
nwfilter nwfilter: changes to rules in VM->host table 2010-10-19 11:35:58 -04:00
opennebula vcpu: support maxvcpu in domain_conf 2010-10-19 10:05:51 -06:00
openvz vcpu: support maxvcpu in domain_conf 2010-10-19 10:05:51 -06:00
phyp vcpu: support maxvcpu in domain_conf 2010-10-19 10:05:51 -06:00
qemu vcpu: complete vcpu support in qemu driver 2010-10-19 10:06:38 -06:00
remote vcpu: implement the remote protocol 2010-10-19 10:02:33 -06:00
secret maint: change "" in err ? err->message : "" to _("unknown error"), ... 2010-05-20 21:36:26 +02:00
security implement usb and pci hot attach in AppArmor driver 2010-09-30 14:54:56 -06:00
storage storage: avoid s[n]printf 2010-08-19 16:18:11 -06:00
test vcpu: support all flags in test driver 2010-10-19 10:06:25 -06:00
uml vcpu: define internal driver API 2010-10-19 10:00:47 -06:00
util Basic framework for auditing integration 2010-10-19 17:31:31 +01:00
vbox vcpu: support maxvcpu in domain_conf 2010-10-19 10:05:51 -06:00
xen vcpu: remove dead xen code 2010-10-19 10:07:10 -06:00
xenapi vcpu: support maxvcpu in domain_conf 2010-10-19 10:05:51 -06:00
.gitignore util: add missing export 2010-10-12 09:42:18 -06:00
datatypes.c Misc cleanups 2010-06-21 10:11:34 +02:00
datatypes.h Snapshot API framework. 2010-04-05 10:24:34 -04:00
driver.c maint: mark translatable string args of VIR_ERROR 2010-05-20 21:36:25 +02:00
driver.h vcpu: define internal driver API 2010-10-19 10:00:47 -06:00
gnutls_1_0_compat.h build: consistently indent preprocessor directives 2010-03-09 19:22:28 +01:00
internal.h Fix up basic migration. 2010-05-25 10:48:10 -04:00
libvirt_bridge.syms
libvirt_daemon.syms Export conditional state driver symbols only when they are defined 2010-03-23 02:05:18 +01:00
libvirt_driver_modules.syms
libvirt_internal.h build: consistently indent preprocessor directives 2010-03-09 19:22:28 +01:00
libvirt_linux.syms
libvirt_macvtap.syms macvtap teardown rework 2010-02-18 15:13:48 +01:00
libvirt_nwfilter.syms Some NWFilter symbols are conditional and have to be exported conditional 2010-04-23 19:51:00 +02:00
libvirt_private.syms Introduce VIR_CLOSE to be used rather than close() 2010-10-19 10:23:51 -04:00
libvirt_public.syms vcpu: add new public API 2010-10-19 10:00:17 -06:00
libvirt_qemu.syms Qemu Monitor API entry point. 2010-07-23 17:30:14 -04:00
libvirt-qemu.c Qemu Monitor API entry point. 2010-07-23 17:30:14 -04:00
libvirt.c vcpu: implement the public APIs 2010-10-19 10:02:06 -06:00
Makefile.am Basic framework for auditing integration 2010-10-19 17:31:31 +01:00
nodeinfo.c nodeinfo: work when hot-plugging is disabled 2010-09-22 07:46:10 -06:00
nodeinfo.h build: consistently indent preprocessor directives 2010-03-09 19:22:28 +01:00
README
remote_protocol-structs vcpu: implement the remote protocol 2010-10-19 10:02:33 -06:00

       libvirt library code README
       ===========================

The directory provides the bulk of the libvirt codebase. Everything
except for the libvirtd daemon and client tools. The build uses a
large number of libtool convenience libraries - one for each child
directory, and then links them together for the final libvirt.so,
although some bits get linked directly to libvirtd daemon instead.

The files directly in this directory are supporting the public API
entry points & data structures.

There are two core shared modules to be aware of:

 * util/  - a collection of shared APIs that can be used by any
            code. This directory is always in the include path
            for all things built

 * conf/  - APIs for parsing / manipulating all the official XML
            files used by the public API. This directory is only
            in the include path for driver implementation modules


Then there are the hypervisor implementations:

 * esx/          - VMware ESX and GSX support using vSphere API over SOAP
 * lxc/          - Linux Native Containers
 * opennebula/   - Open Nebula using XMLRPC
 * openvz/       - OpenVZ containers using cli tools
 * phyp/         - IBM Power Hypervisor using CLI tools over SSH
 * qemu/         - QEMU / KVM using qemu CLI/monitor
 * remote/       - Generic libvirt native RPC client
 * test/         - A "mock" driver for testing
 * uml/          - User Mode Linux
 * vbox/         - Virtual Box using native API
 * xen/          - Xen using hypercalls, XenD SEXPR & XenStore


Finally some secondary drivers that are shared for several HVs.
Currently these are used by LXC, OpenVZ, QEMU, UML and Xen drivers.
The ESX, OpenNebula, Power Hypervisor, Remote, Test & VirtualBox
drivers all implement the secondary drivers directly

 * interface/    - Host network interface management
 * network/      - Virtual NAT networking
 * node_device/  - Host device enumeration
 * secret/       - Secret management
 * security/     - Mandatory access control drivers
 * storage/      - Storage management drivers


Since both the hypervisor and secondary drivers can be built as
dlopen()able modules, it is *FORBIDDEN* to have build dependencies
between these directories. Drivers are only allowed to depend on
the public API, and the internal APIs in the util/ and conf/
directories