From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from mailman by lists.gnu.org with tmda-scanned (Exim 4.43) id 1NuPmZ-0008Nt-Ec for qemu-devel@nongnu.org; Wed, 24 Mar 2010 08:33:59 -0400 Received: from [140.186.70.92] (port=56751 helo=eggs.gnu.org) by lists.gnu.org with esmtp (Exim 4.43) id 1NuPmU-0006wt-4a for qemu-devel@nongnu.org; Wed, 24 Mar 2010 08:33:58 -0400 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.69) (envelope-from ) id 1NuPgn-00056O-7E for qemu-devel@nongnu.org; Wed, 24 Mar 2010 08:28:02 -0400 Received: from mx1.redhat.com ([209.132.183.28]:29365) by eggs.gnu.org with esmtp (Exim 4.69) (envelope-from ) id 1NuPgm-00056F-UF for qemu-devel@nongnu.org; Wed, 24 Mar 2010 08:28:01 -0400 Message-ID: <4BAA0544.1060308@redhat.com> Date: Wed, 24 Mar 2010 14:27:48 +0200 From: Avi Kivity MIME-Version: 1.0 Subject: Re: [Qemu-devel] Re: [libvirt] Supporting hypervisor specific APIs in libvirt References: <4BA7C40C.2040505@codemonkey.ws> <20100323145105.GV16253@redhat.com> <4BA8D8A9.7090308@codemonkey.ws> <201003231557.19474.paul@codesourcery.com> <4BA8E6FC.9080207@codemonkey.ws> <4BA901B5.3020704@redhat.com> <4BA9A066.3070904@redhat.com> <4BAA036D.3010707@codemonkey.ws> In-Reply-To: <4BAA036D.3010707@codemonkey.ws> Content-Type: text/plain; charset=UTF-8; format=flowed Content-Transfer-Encoding: 7bit List-Id: qemu-devel.nongnu.org List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , To: Anthony Liguori Cc: "libvir-list@redhat.com" , Paul Brook , qemu-devel@nongnu.org On 03/24/2010 02:19 PM, Anthony Liguori wrote: >> qemud >> - daemonaizes itself >> - listens on /var/lib/qemud/guests for incoming guest connections >> - listens on /var/lib/qemud/clients for incoming client connections >> - filters access according to uid (SCM_CREDENTIALS) >> - can pass a new monitor to client (SCM_RIGHTS) >> - supports 'list' command to query running guests >> - async messages on guest startup/exit > > > Then guests run with the wrong security context. Why? They run with the security context of whoever launched them (could be libvirtd). -- error compiling committee.c: too many arguments to function