libvirt apparmor profile blocks access to ceph config file if cluster name is not "ceph"

Bug #1588576 reported by youshotwhointhatwhatnow on 2016-06-03
8
This bug affects 1 person
Affects Status Importance Assigned to Milestone
libvirt (Ubuntu)
Medium
Unassigned

Bug Description

The name of the Ceph config file depends on the name of your Ceph cluster. By default the cluster name is just "ceph" so the config file is named "ceph.conf". If you name your cluster "foobar" your config file will be named "foobar.conf".

The apparmor profile /etc/apparmor.d/abstractions/libvirt-qemu grants read access only to "/etc/ceph/ceph.conf" where it really should grant read access to "/etc/ceph/*.conf".

This is on Xenial server.

Joshua Powers (powersj) on 2017-01-24
Changed in libvirt (Ubuntu):
status: New → Confirmed
importance: Undecided → Medium
To post a comment you must log in.
This report contains Public information  Edit
Everyone can see this information.

Other bug subscribers