On Fri, Feb 24, 2017 at 4:50 PM, Logan V <email address hidden> wrote:
> is there an
> additional step necessary after modifying the abstractions/libvirt-qemu
> file with the additional rule? Ie. some command to reload the file? I
> restarted apparmor, libvirt-bin, and nova-compute services and it is
> still failing with the same message despite the line being added to the
> apparmor abstraction file.
>
The workflow is that on guest creation it
uses /etc/apparmor.d/libvirt/TEMPLATE.qemu to build a guest specific file.
That is then loaded for the guests qemu and at that point the (now changed)
abstraction is pulled in.
--
Christian Ehrhardt
Software Engineer, Ubuntu Server
Canonical Ltd
On Fri, Feb 24, 2017 at 4:50 PM, Logan V <email address hidden> wrote:
> is there an libvirt- qemu
> additional step necessary after modifying the abstractions/
> file with the additional rule? Ie. some command to reload the file? I
> restarted apparmor, libvirt-bin, and nova-compute services and it is
> still failing with the same message despite the line being added to the
> apparmor abstraction file.
>
See https:/ /help.ubuntu. com/lts/ serverguide/ apparmor. html
But you stated you restarted apparmor already.
The workflow is that on guest creation it d/libvirt/ TEMPLATE. qemu to build a guest specific file.
uses /etc/apparmor.
That is then loaded for the guests qemu and at that point the (now changed)
abstraction is pulled in.
--
Christian Ehrhardt
Software Engineer, Ubuntu Server
Canonical Ltd