NEWS.rst | 13 +++++++++++++ 1 file changed, 13 insertions(+)
There are some features/improvements/bug fixes I've either
contributed or reviewed/merged. Document them for upcoming
release.
Signed-off-by: Michal Privoznik <mprivozn@redhat.com>
---
NEWS.rst | 13 +++++++++++++
1 file changed, 13 insertions(+)
diff --git a/NEWS.rst b/NEWS.rst
index 7984f358f3..ee4eac183e 100644
--- a/NEWS.rst
+++ b/NEWS.rst
@@ -72,6 +72,19 @@ v11.1.0 (unreleased)
* **Bug fixes**
+ * tools: ssh-proxy: Check if domain is running before connecting to it
+
+ If domain is not running but has a static CID configured for its VSOCK then
+ the ssh-proxy parsed it anyways. This may have resulted in mistakenly
+ connecting to a different domain. Domain status is checked before parsing
+ its CID.
+
+ * apparmor: Allow SGX if configured
+
+ If domain has ``<memory model='sgx-epc'\>`` configured then libvirt now
+ adds corresponding devices into a per-domain profile so that AppArmor does
+ not deny QEMU access to them.
+
v11.0.0 (2025-01-15)
====================
--
2.45.3
On Thu, Feb 27, 2025 at 03:14:54PM +0100, Michal Privoznik wrote: >There are some features/improvements/bug fixes I've either >contributed or reviewed/merged. Document them for upcoming >release. > >Signed-off-by: Michal Privoznik <mprivozn@redhat.com> Reviewed-by: Martin Kletzander <mkletzan@redhat.com> >--- > NEWS.rst | 13 +++++++++++++ > 1 file changed, 13 insertions(+) > >diff --git a/NEWS.rst b/NEWS.rst >index 7984f358f3..ee4eac183e 100644 >--- a/NEWS.rst >+++ b/NEWS.rst >@@ -72,6 +72,19 @@ v11.1.0 (unreleased) > > * **Bug fixes** > >+ * tools: ssh-proxy: Check if domain is running before connecting to it >+ >+ If domain is not running but has a static CID configured for its VSOCK then >+ the ssh-proxy parsed it anyways. This may have resulted in mistakenly >+ connecting to a different domain. Domain status is checked before parsing >+ its CID. >+ >+ * apparmor: Allow SGX if configured >+ >+ If domain has ``<memory model='sgx-epc'\>`` configured then libvirt now >+ adds corresponding devices into a per-domain profile so that AppArmor does >+ not deny QEMU access to them. >+ > > v11.0.0 (2025-01-15) > ==================== >-- >2.45.3 >
© 2016 - 2025 Red Hat, Inc.