From a1e11acc5b3d65ccc41925ebae2d2b273832d59f Mon Sep 17 00:00:00 2001
From: Dhina17 <dhinalogu@gmail.com>
Date: Tue, 10 Mar 2020 08:19:07 +0530
Subject: [PATCH] onclite: sepolicy: Resolve vold denials

* Allow vold to access tee device (/dev/qseecom) properly
* Its for encryption

Signed-off-by: Dhina17 <dhinalogu@gmail.com>
---
 sepolicy/vold.te | 2 +-
 1 file changed, 1 insertion(+), 1 deletion(-)

diff --git a/sepolicy/vold.te b/sepolicy/vold.te
index 7e29fcc..7df4050 100644
--- a/sepolicy/vold.te
+++ b/sepolicy/vold.te
@@ -1,3 +1,3 @@
 allow vold proc_touchpanel:dir r_dir_perms;
-allow vold tee_device:chr_file {read write};
+allow vold tee_device:chr_file {ioctl open read write};
 allow vold vendor_file:file { getattr open read };
-- 
GitLab