Bug 1167201
Summary: | virt-who runs as unconfined_service_t | ||
---|---|---|---|
Product: | Red Hat Enterprise Linux 7 | Reporter: | Miroslav Grepl <mgrepl> |
Component: | virt-who | Assignee: | Radek Novacek <rnovacek> |
Status: | CLOSED NOTABUG | QA Contact: | John Sefler <jsefler> |
Severity: | medium | Docs Contact: | |
Priority: | medium | ||
Version: | 7.1 | CC: | lvrabec, mgrepl, mmalik, ovasik, pkis, plautrba, pvrabec, qe-baseos-security |
Target Milestone: | rc | ||
Target Release: | --- | ||
Hardware: | All | ||
OS: | Linux | ||
Whiteboard: | |||
Fixed In Version: | Doc Type: | Bug Fix | |
Doc Text: | Story Points: | --- | |
Clone Of: | 1166537 | Environment: | |
Last Closed: | 2014-11-24 09:26:31 UTC | Type: | Bug |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: | |||
Bug Depends On: | 1166537 | ||
Bug Blocks: | 1061797 |
Description
Miroslav Grepl
2014-11-24 08:13:24 UTC
There is a `/usr/bin/virt-who` script that runs: exec /usr/bin/python /usr/share/virt-who/virtwho.py "$@" Would it suffice to label this script as `virtd_exec_t`? Will it affect commandline usage of the program? This script is also started from the virt-who.service unit. Yes, I overlooked it. Thank you. I see it ExecStart=/usr/bin/virt-who |