Jamie Strandboge: > This rule would allow any confined guest to change the 'comm' value of any task > on the system, if the system otherwise allowed it. Right. Fixed with the 'owner' prefix in my v2 patch, as suggested by Christian. Cheers, -- intrigeri -- libvir-list mailing list libvir-list@xxxxxxxxxx https://www.redhat.com/mailman/listinfo/libvir-list