mirror of
https://chromium.googlesource.com/crosvm/crosvm
synced 2025-02-10 20:19:07 +00:00
Add support for creating block devices using the `crosvm devices` command. Due to conflicting seccomp policies between vhost-user transport and the block device, we need to temporarily remove some lines from vhost_user.policy and vvu.policy and reproduce them in the serial device's policy. This will be handled properly later using a new seccomp policy parser. BUG=b:217480043 TEST=`crosvm devices --block vhost=/tmp/vu-block,path=disk.img` results in a working vhost-user block device. TEST=`crosvm devices --block vhost=0000:00:10.0,path=disk.img` results in a working VVU block device. TEST=regular virtio block device is usable as jailed root device. Change-Id: Ide62adbf81390eb39cd10f3d2880e2c065982d05 Reviewed-on: https://chromium-review.googlesource.com/c/crosvm/crosvm/+/3765000 Reviewed-by: Daniel Verkamp <dverkamp@chromium.org> Commit-Queue: Alexandre Courbot <acourbot@chromium.org> Tested-by: Alexandre Courbot <acourbot@chromium.org> Reviewed-by: Keiichi Watanabe <keiichiw@chromium.org>
8 lines
343 B
Text
8 lines
343 B
Text
# Copyright 2022 The Chromium OS Authors. All rights reserved.
|
|
# Use of this source code is governed by a BSD-style license that can be
|
|
# found in the LICENSE file.
|
|
|
|
# Policy file for a block device used as a regular, in-VMM virtio device.
|
|
|
|
@include /usr/share/policy/crosvm/common_device.policy
|
|
@include /usr/share/policy/crosvm/block.policy
|