From patchwork Tue Oct 8 16:22:20 2019 Content-Type: text/plain; charset="utf-8" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit X-Patchwork-Submitter: Cole Robinson X-Patchwork-Id: 175519 Delivered-To: patch@linaro.org Received: by 2002:a92:7e96:0:0:0:0:0 with SMTP id q22csp5921883ill; Tue, 8 Oct 2019 09:26:13 -0700 (PDT) X-Google-Smtp-Source: APXvYqzS5reKv9hGtixXqo59DEZ4sJT03i2qEFPEx5pATZl79QXl3lGkPjIcPSqYb4ltZHy5QlW3 X-Received: by 2002:a92:7e95:: with SMTP id q21mr34706791ill.98.1570551973653; Tue, 08 Oct 2019 09:26:13 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1570551973; cv=none; d=google.com; s=arc-20160816; b=nByhLx2bjK+XOblpuVyZ6zcLVQxyQs9QLs0+VkSHV3W6Sq7on35fuwFp0O23Y1dYOc FtrJxk9JS43QvboZ10G0HmFlGvycQOKg/6a/bfEf4ma/wxRNq7WScHREzCU18sOR5GTA HbU+884lUt4CDlSGfAcCQ6ETprxPR7SWTKFv7qk9FU12/1GPt9Mb86a8pEo54PWrSBNb yoeChTcjIWmxCmGjP4RZgMASrFc4LIOMY6wfn5XhxmKxIjynMS9G9wcDAtiUMqmFKD9z Uu5uIfA+wmOMfxLm+h1wwJNSzRGu3eb9X+IMa36vZsDODfky2+/WyYT3o3fZLfuYdhTT cPow== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=errors-to:sender:content-transfer-encoding:list-subscribe:list-help :list-post:list-archive:list-unsubscribe:list-id:precedence:subject :cc:mime-version:message-id:date:to:from:delivered-to; bh=+OqB3xXhIWfLRUBoTdUiKSp0b/oFD0SOWZWQM0cnY9Y=; b=x0T6n//Csil3vfNnB6ZQSJ3ipkeN3xujNwjnosFe5q9WS+Lij4SbS0mqgWx7rzXCKp WMqXnN9GuL+ZTaof5StiGgKFEsRmUkjKpVEvPJxg44KO9trRdh0Xwuz92BizdlBZN/r2 z5nRfDUVxYMImzJczlMry2FbqT04DZWtyejQ2O/gp564VzbwxgvFlANVtai1wz309Fnc fv/3uNm4w7MJ06MISQYesjPqGT4DO1XOIDyIA7qHLsXi4qknPXqe+P+hCC+nGITHmspo lYZzkDH3+L8nBc2OFTyf5v992ljq15gQm5c0oZ6UO9b+ieRGdPAEDXUp/1TW6Ni01rvr hOnQ== ARC-Authentication-Results: i=1; mx.google.com; spf=pass (google.com: domain of libvir-list-bounces@redhat.com designates 209.132.183.28 as permitted sender) smtp.mailfrom=libvir-list-bounces@redhat.com; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=redhat.com Return-Path: Received: from mx1.redhat.com (mx1.redhat.com. [209.132.183.28]) by mx.google.com with ESMTPS id q87si21192228ili.155.2019.10.08.09.26.13 (version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Tue, 08 Oct 2019 09:26:13 -0700 (PDT) Received-SPF: pass (google.com: domain of libvir-list-bounces@redhat.com designates 209.132.183.28 as permitted sender) client-ip=209.132.183.28; Authentication-Results: mx.google.com; spf=pass (google.com: domain of libvir-list-bounces@redhat.com designates 209.132.183.28 as permitted sender) smtp.mailfrom=libvir-list-bounces@redhat.com; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=redhat.com Received: from smtp.corp.redhat.com (int-mx03.intmail.prod.int.phx2.redhat.com [10.5.11.13]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by mx1.redhat.com (Postfix) with ESMTPS id 4B9BF30860A6; Tue, 8 Oct 2019 16:26:09 +0000 (UTC) Received: from colo-mx.corp.redhat.com (colo-mx02.intmail.prod.int.phx2.redhat.com [10.5.11.21]) by smtp.corp.redhat.com (Postfix) with ESMTPS id 164CE60605; Tue, 8 Oct 2019 16:26:08 +0000 (UTC) Received: from lists01.pubmisc.prod.ext.phx2.redhat.com (lists01.pubmisc.prod.ext.phx2.redhat.com [10.5.19.33]) by colo-mx.corp.redhat.com (Postfix) with ESMTP id C74244EE69; Tue, 8 Oct 2019 16:26:07 +0000 (UTC) Received: from smtp.corp.redhat.com (int-mx03.intmail.prod.int.phx2.redhat.com [10.5.11.13]) by lists01.pubmisc.prod.ext.phx2.redhat.com (8.13.8/8.13.8) with ESMTP id x98GLw7h008654 for ; Tue, 8 Oct 2019 12:21:58 -0400 Received: by smtp.corp.redhat.com (Postfix) id A2C1E60606; Tue, 8 Oct 2019 16:21:58 +0000 (UTC) Delivered-To: libvirt-list@redhat.com Received: from worklaptop.bos.redhat.com (dhcp-17-175.bos.redhat.com [10.18.17.175]) by smtp.corp.redhat.com (Postfix) with ESMTP id 3B57760605; Tue, 8 Oct 2019 16:21:55 +0000 (UTC) From: Cole Robinson To: libvirt-list@redhat.com Date: Tue, 8 Oct 2019 12:22:20 -0400 Message-Id: MIME-Version: 1.0 X-Scanned-By: MIMEDefang 2.79 on 10.5.11.13 X-loop: libvir-list@redhat.com Cc: christian.ehrhardt@canonical.com Subject: [libvirt] [PATCH 0/7] security: apparmor: prep for qcow2 data_file X-BeenThere: libvir-list@redhat.com X-Mailman-Version: 2.1.12 Precedence: junk List-Id: Development discussions about the libvirt library & tools List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Sender: libvir-list-bounces@redhat.com Errors-To: libvir-list-bounces@redhat.com X-Scanned-By: MIMEDefang 2.79 on 10.5.11.13 X-Greylist: Sender IP whitelisted, not delayed by milter-greylist-4.5.16 (mx1.redhat.com [10.5.110.44]); Tue, 08 Oct 2019 16:26:12 +0000 (UTC) This series does some preparation cleanup and refactoring to simplify adding qcow2 data_file support to the apparmor driver. More info on the qcow2 feature and libvirt work here: https://www.redhat.com/archives/libvir-list/2019-October/msg00303.html Cole Robinson (7): conf: Move -virDomainDiskDefForeachPath to virt-aa-helper security: apparmor: Remove unused ignoreOpenFailure security: apparmor: Drop disk_foreach_iterator security: apparmor: Pass virStorageSource to add_file_path security: apparmor: Push virStorageSource checks to add_file_path security: apparmor: Use only virStorageSource for disk paths security: apparmor: Make storage_source_add_files recursively callable src/conf/domain_conf.c | 42 ---------------------------------- src/conf/domain_conf.h | 10 -------- src/libvirt_private.syms | 1 - src/security/virt-aa-helper.c | 43 ++++++++++++++++++++++++----------- 4 files changed, 30 insertions(+), 66 deletions(-) -- 2.23.0 -- libvir-list mailing list libvir-list@redhat.com https://www.redhat.com/mailman/listinfo/libvir-list Reviewed-by: Michal Privoznik