I'm brand new to lxc and apparmor, but I wonder if this is sufficient:
=== modified file 'apparmor.d/usr.sbin.libvirtd' --- apparmor.d/usr.sbin.libvirtd 2009-11-19 21:10:26 +0000 +++ apparmor.d/usr.sbin.libvirtd 2009-11-19 21:26:21 +0000 @@ -32,6 +32,7 @@ /sbin/* Ux, /usr/bin/* Ux, /usr/sbin/* Ux, + /usr/lib/libvirt/* Ux,
# force the use of virt-aa-helper audit deny /sbin/apparmor_parser rwxl,
I'm brand new to lxc and apparmor, but I wonder if this is sufficient:
=== modified file 'apparmor. d/usr.sbin. libvirtd' d/usr.sbin. libvirtd 2009-11-19 21:10:26 +0000 d/usr.sbin. libvirtd 2009-11-19 21:26:21 +0000
--- apparmor.
+++ apparmor.
@@ -32,6 +32,7 @@
/sbin/* Ux,
/usr/bin/* Ux,
/usr/sbin/* Ux,
+ /usr/lib/libvirt/* Ux,
# force the use of virt-aa-helper parser rwxl,
audit deny /sbin/apparmor_