]> xenbits.xensource.com Git - libvirt.git/commitdiff
Disable NWFilter driver completely when unprivileged
authorDaniel P. Berrange <berrange@redhat.com>
Thu, 19 Jul 2012 14:58:45 +0000 (15:58 +0100)
committerDaniel P. Berrange <berrange@redhat.com>
Fri, 20 Jul 2012 16:32:26 +0000 (17:32 +0100)
Running libvirtd unprivileged results in a warning message from
the NWFilter driver

  virNWFilterSnoopLeaseFileRefresh:1882 : open("/var/run/libvirt/network/nwfilter.ltmp"): No such file or directory

Since it requires privileged network access, this driver should
not even run when unprivileged.

Signed-off-by: Daniel P. Berrange <berrange@redhat.com>
src/nwfilter/nwfilter_driver.c

index 58d91f9d6997ac86d5352bb2763882e9da051772..903454936065314c38701575c7ebd09031096ed3 100644 (file)
@@ -68,6 +68,9 @@ static int
 nwfilterDriverStartup(int privileged) {
     char *base = NULL;
 
+    if (!privileged)
+        return 0;
+
     if (virNWFilterIPAddrMapInit() < 0)
         return -1;
     if (virNWFilterLearnInit() < 0)