From b740a1c3e65853f3fcac0c957e604da5bd3138e3 Mon Sep 17 00:00:00 2001 From: Vladimir Bauer Date: Sat, 6 May 2023 20:51:11 +0500 Subject: [PATCH] allow k for user_publicshare_dirs ALLOWED libvirtd file_lock /home/vbauer/Public/archlinux/archlinux-2023.05.03-x86_64.iso comm=qemu-event requested_mask=k denied_mask=k class=file ALLOWED libvirtd file_lock /home/vbauer/Public/archlinux/archlinux-2023.05.03-x86_64.iso comm=rpc-libvirtd requested_mask=k denied_mask=k class=file --- apparmor.d/groups/virt/libvirtd | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/apparmor.d/groups/virt/libvirtd b/apparmor.d/groups/virt/libvirtd index dc4a86aa..698c892a 100644 --- a/apparmor.d/groups/virt/libvirtd +++ b/apparmor.d/groups/virt/libvirtd @@ -148,7 +148,7 @@ profile libvirtd @{exec_path} flags=(attach_disconnected) { @{user_share_dirs}/ r, @{user_share_dirs}/libvirt/{,**} rwk, @{user_vm_dirs}/{,**} rwk, - @{user_publicshare_dirs}/{,**} rw, + @{user_publicshare_dirs}/{,**} rwk, @{run}/libvirt/ rw, @{run}/libvirt/** rwk,