]> Frank Brehm's Git Trees - config/bruni/etc-mint-new1.git/commitdiff
daily autocommit
authorroot <root@bruni.home.brehm-online.com>
Tue, 30 Aug 2022 06:50:19 +0000 (08:50 +0200)
committerFrank Brehm <root@bruni.home.brehm-online.com>
Tue, 30 Aug 2022 06:50:19 +0000 (08:50 +0200)
.etckeeper
apparmor.d/libvirt/libvirt-11907b27-d003-4cf9-aac0-27f3ff9a219a [new file with mode: 0644]
apparmor.d/libvirt/libvirt-11907b27-d003-4cf9-aac0-27f3ff9a219a.files [new file with mode: 0644]

index fcd4a882f8452729cdad520c50667d92e1efb619..a2080ddbd2a9da5d16aefb0dc450f533c7d7f559 100755 (executable)
@@ -411,6 +411,8 @@ maybe chmod 0755 'apparmor.d/force-complain'
 maybe chmod 0755 'apparmor.d/libvirt'
 maybe chmod 0644 'apparmor.d/libvirt/TEMPLATE.lxc'
 maybe chmod 0644 'apparmor.d/libvirt/TEMPLATE.qemu'
+maybe chmod 0644 'apparmor.d/libvirt/libvirt-11907b27-d003-4cf9-aac0-27f3ff9a219a'
+maybe chmod 0644 'apparmor.d/libvirt/libvirt-11907b27-d003-4cf9-aac0-27f3ff9a219a.files'
 maybe chmod 0644 'apparmor.d/lightdm-guest-session'
 maybe chmod 0755 'apparmor.d/local'
 maybe chmod 0644 'apparmor.d/local/README'
diff --git a/apparmor.d/libvirt/libvirt-11907b27-d003-4cf9-aac0-27f3ff9a219a b/apparmor.d/libvirt/libvirt-11907b27-d003-4cf9-aac0-27f3ff9a219a
new file mode 100644 (file)
index 0000000..aa705be
--- /dev/null
@@ -0,0 +1,11 @@
+#
+# This profile is for the domain whose UUID matches this file.
+#
+
+#include <tunables/global>
+
+profile libvirt-11907b27-d003-4cf9-aac0-27f3ff9a219a flags=(attach_disconnected) {
+  #include <abstractions/libvirt-qemu>
+  #include <libvirt/libvirt-11907b27-d003-4cf9-aac0-27f3ff9a219a.files>
+
+}
diff --git a/apparmor.d/libvirt/libvirt-11907b27-d003-4cf9-aac0-27f3ff9a219a.files b/apparmor.d/libvirt/libvirt-11907b27-d003-4cf9-aac0-27f3ff9a219a.files
new file mode 100644 (file)
index 0000000..569261f
--- /dev/null
@@ -0,0 +1,12 @@
+# DO NOT EDIT THIS FILE DIRECTLY. IT IS MANAGED BY LIBVIRT.
+  "/var/log/libvirt/**/centos-stream9.log" w,
+  "/var/lib/libvirt/qemu/domain-centos-stream9/monitor.sock" rw,
+  "/var/lib/libvirt/qemu/domain-1-centos-stream9/*" rw,
+  "/run/libvirt/**/centos-stream9.pid" rwk,
+  "/run/libvirt/**/*.tunnelmigrate.dest.centos-stream9" rw,
+  "/var/lib/images/centos-stream9.qcow2" rwk,
+  "/dev/vhost-net" rw,
+  "/var/lib/libvirt/qemu/domain-1-centos-stream9/{,**}" rwk,
+  "/var/lib/libvirt/qemu/channel/target/domain-1-centos-stream9/{,**}" rwk,
+  "/var/lib/libvirt/qemu/domain-1-centos-stream9/master-key.aes" rwk,
+  "/dev/net/tun" rwk,