libvirt/src/security/apparmor
Christian Ehrhardt 18ffb1670e
apparmor: Add openGraphicsFD rule for named profile
Commit a3ab6d42 changed the libvirtd profile to a named profile
but neglected to accommodate the change in the qemu profile
ptrace and signal rules.
Later on 4ec3cf9a fixed that for ptrace and signal but openGraphicsFD
is still missing.

As a result, libvirtd is unable to open UI on libvirt >=5.1 e.g. with
virt-manager.

Add openGraphicsFD rule that references the libvirtd profile
by name in addition to full binary path.

Fixes: https://bugs.launchpad.net/ubuntu/+source/libvirt/+bug/1833040

Signed-off-by: Christian Ehrhardt <christian.ehrhardt@canonical.com>
2019-06-19 14:22:47 +02:00
..
libvirt-lxc
libvirt-qemu apparmor: Add openGraphicsFD rule for named profile 2019-06-19 14:22:47 +02:00
TEMPLATE.lxc
TEMPLATE.qemu
usr.lib.libvirt.virt-aa-helper security: aa-helper: allow virt-aa-helper to read /dev/dri 2019-02-25 08:50:38 +01:00
usr.sbin.libvirtd apparmor: convert libvirtd profile to a named profile 2019-01-23 11:10:15 -07:00