Libvirtd: update abstractions.

This commit is contained in:
Alexandre Pujol 2021-09-28 21:57:52 +01:00
parent c4f1e00fba
commit c6ab1770d0
No known key found for this signature in database
GPG Key ID: C5469996F0DF68EC
2 changed files with 9 additions and 9 deletions

View File

@ -1,8 +1,10 @@
#include <abstractions/base>
# apparmor.d - Full set of apparmor profiles
# Copyright (C) Libvirt Team
# Copyright (C) 2021 Alexandre Pujol <alexandre@pujol.io>
# SPDX-License-Identifier: GPL-2.0-only
# Allow receiving signals from libvirtd
# allow receiving signals from libvirtd
signal (receive) peer=libvirtd,
signal (receive) peer=/usr/sbin/libvirtd,
umount,

View File

@ -1,6 +1,7 @@
#include <abstractions/base>
#include <abstractions/consoles>
#include <abstractions/nameservice>
# apparmor.d - Full set of apparmor profiles
# Copyright (C) Libvirt Team
# Copyright (C) 2021 Alexandre Pujol <alexandre@pujol.io>
# SPDX-License-Identifier: GPL-2.0-only
# required for reading disk images
capability dac_override,
@ -15,11 +16,9 @@
network inet6 stream,
ptrace (readby, tracedby) peer=libvirtd,
ptrace (readby, tracedby) peer=/usr/sbin/libvirtd,
ptrace (readby, tracedby) peer=virtqemud,
signal (receive) peer=libvirtd,
signal (receive) peer=/usr/sbin/libvirtd,
signal (receive) peer=virtqemud,
/dev/kvm rw,
@ -224,7 +223,6 @@
# allow connect with openGraphicsFD to work
unix (send, receive) type=stream addr=none peer=(label=libvirtd),
unix (send, receive) type=stream addr=none peer=(label=/usr/sbin/libvirtd),
unix (send, receive) type=stream addr=none peer=(label=virtqemud),
# for gathering information about available host resources