aboutsummaryrefslogtreecommitdiff
path: root/VERSION
diff options
context:
space:
mode:
authorDr. David Alan Gilbert <dgilbert@redhat.com>2020-10-23 17:58:08 +0100
committerDr. David Alan Gilbert <dgilbert@redhat.com>2020-10-26 18:35:32 +0000
commit6084633dff3a05d63176e06d7012c7e15aba15be (patch)
treefa6787648efbe0881cb6fb74924b71672ff57068 /VERSION
parent06844584b62a43384642f7243b0fc01c9fff0fc7 (diff)
downloadqemu-6084633dff3a05d63176e06d7012c7e15aba15be.zip
qemu-6084633dff3a05d63176e06d7012c7e15aba15be.tar.gz
qemu-6084633dff3a05d63176e06d7012c7e15aba15be.tar.bz2
tools/virtiofsd: xattr name mappings: Add option
Add an option to define mappings of xattr names so that the client and server filesystems see different views. This can be used to have different SELinux mappings as seen by the guest, to run the virtiofsd with less privileges (e.g. in a case where it can't set trusted/system/security xattrs but you want the guest to be able to), or to isolate multiple users of the same name; e.g. trusted attributes used by stacking overlayfs. A mapping engine is used with 3 simple rules; the rules can be combined to allow most useful mapping scenarios. The ruleset is defined by -o xattrmap='rules...'. This patch doesn't use the rule maps yet. Signed-off-by: Dr. David Alan Gilbert <dgilbert@redhat.com> Message-Id: <20201023165812.36028-2-dgilbert@redhat.com> Reviewed-by: Stefan Hajnoczi <stefanha@redhat.com> Signed-off-by: Dr. David Alan Gilbert <dgilbert@redhat.com>
Diffstat (limited to 'VERSION')
0 files changed, 0 insertions, 0 deletions