Re: [PATCH] AppArmor: allow QEMU to set_process_name.

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 




On Mon, Dec 5, 2016 at 12:21 PM, intrigeri <intrigeri+libvirt@xxxxxxxx> wrote:
+  @{PROC}/@{pid}/task/@{tid}/comm rw,


Hi,
we have used the following for now that we planned to submit soon:
owner @{PROC}/@{pid}/task/[0-9]*/comm rw

But I like yours more since you are adding the explicit TID instead of a pattern.
I'm convinced you confirmed your fix working, but I wonder if might want to consider the "owner" part we had.

CCing a few people who were involved on the old patch.


--
Christian Ehrhardt
Software Engineer, Ubuntu Server
Canonical Ltd
--
libvir-list mailing list
libvir-list@xxxxxxxxxx
https://www.redhat.com/mailman/listinfo/libvir-list

[Index of Archives]     [Virt Tools]     [Libvirt Users]     [Lib OS Info]     [Fedora Users]     [Fedora Desktop]     [Fedora SELinux]     [Big List of Linux Books]     [Yosemite News]     [KDE Users]     [Fedora Tools]
  Powered by Linux