Comment 7 for bug 912007

Revision history for this message
Simon Déziel (sdeziel) wrote : Re: [Bug 912007] Re: Apparmor profile denies access to /dev/dm-* for guests using LVM partitions storage

On 12-01-05 11:58 AM, Serge Hallyn wrote:
> Per discussion on irc, I'll add a deny rule to usr.lib.libvirt.virt-aa-
> helper:
>
> deny /dev/md* r,

I'm assuming you meant:

deny /dev/dm-* r,

> which will silence the message.

Out of curiosity I tried allowing read access for virt-aa-helper to
/dev/dm-* and the resulting guest profile is identical:

"/dev/dm-1" rw,

Your suggestion to silence the message makes sense, thanks for looking
into this.