2016-01-11 23:52:12 |
Serge Hallyn |
description |
If a system is configured to allocate hugepages on boot, systemd will automatically present a hugetblfs at /dev/hugepages
This is not compatible with the current apparmor profile which expects presentation at /var/run/hugepages.
ProblemType: Bug
DistroRelease: Ubuntu 16.04
Package: libvirt-bin 1.2.21-2ubuntu1
ProcVersionSignature: Ubuntu 4.3.0-2.11-generic 4.3.0
Uname: Linux 4.3.0-2-generic x86_64
NonfreeKernelModules: zfs zunicode zcommon znvpair zavl
ApportVersion: 2.19.2-0ubuntu9
Architecture: amd64
CurrentDesktop: Unity
Date: Thu Dec 10 11:16:28 2015
EcryptfsInUse: Yes
InstallationDate: Installed on 2014-11-25 (379 days ago)
InstallationMedia: Ubuntu 15.04 "Vivid Vervet" - Alpha amd64 (20141124)
SourcePackage: libvirt
UpgradeStatus: Upgraded to xenial on 2015-11-02 (38 days ago)
modified.conffile..etc.libvirt.qemu.conf: [inaccessible: [Errno 13] Permission denied: '/etc/libvirt/qemu.conf']
modified.conffile..etc.libvirt.qemu.networks.default.xml: [inaccessible: [Errno 13] Permission denied: '/etc/libvirt/qemu/networks/default.xml'] |
==============================================
SRU Justification
Impact: libvirt unable to grant access to hugepages
Fix: add an apparmor rule to allow libvirt to access hugepages at the path which systemd uses
Test case: boot a vm with hugepages enabled.
Regression potential: We already have an allow rule for the old hugepages mount path, we are only allowing access to the path which systemd uses. So there should be no regressions.
==============================================
If a system is configured to allocate hugepages on boot, systemd will automatically present a hugetblfs at /dev/hugepages
This is not compatible with the current apparmor profile which expects presentation at /var/run/hugepages.
ProblemType: Bug
DistroRelease: Ubuntu 16.04
Package: libvirt-bin 1.2.21-2ubuntu1
ProcVersionSignature: Ubuntu 4.3.0-2.11-generic 4.3.0
Uname: Linux 4.3.0-2-generic x86_64
NonfreeKernelModules: zfs zunicode zcommon znvpair zavl
ApportVersion: 2.19.2-0ubuntu9
Architecture: amd64
CurrentDesktop: Unity
Date: Thu Dec 10 11:16:28 2015
EcryptfsInUse: Yes
InstallationDate: Installed on 2014-11-25 (379 days ago)
InstallationMedia: Ubuntu 15.04 "Vivid Vervet" - Alpha amd64 (20141124)
SourcePackage: libvirt
UpgradeStatus: Upgraded to xenial on 2015-11-02 (38 days ago)
modified.conffile..etc.libvirt.qemu.conf: [inaccessible: [Errno 13] Permission denied: '/etc/libvirt/qemu.conf']
modified.conffile..etc.libvirt.qemu.networks.default.xml: [inaccessible: [Errno 13] Permission denied: '/etc/libvirt/qemu/networks/default.xml'] |
|