Use security_model mapped-xattr for QEMU Persistent Secure Storage
Use security_model mapped-xattr for QEMU_PSS_HOST_DIR.
This allows folders/files below /data/tee to be owned by
any uid/gid of the QEMU context.
Fixes https://github.com/OP-TEE/build/issues/478
Signed-off-by: Christoph Gellner <cgellner@de.adit-jv.com>
Suggested-by: Jerome Forissier <jerome@forissier.org>
Reviewed-by: Jerome Forissier <jerome@forissier.org>
diff --git a/common.mk b/common.mk
index fb77e9b..f027208 100644
--- a/common.mk
+++ b/common.mk
@@ -425,7 +425,7 @@
-device virtio-9p-device,fsdev=fsdev0,mount_tag=host
ifeq ($(QEMU_PSS_ENABLE),y)
QEMU_EXTRA_ARGS +=\
- -fsdev local,id=fsdev1,path=$(QEMU_PSS_HOST_DIR),security_model=none \
+ -fsdev local,id=fsdev1,path=$(QEMU_PSS_HOST_DIR),security_model=mapped-xattr \
-device virtio-9p-device,fsdev=fsdev1,mount_tag=secure
endif
endif