Skip to content
Snippets Groups Projects
Commit dce7ed58 authored by Artem Borisov's avatar Artem Borisov
Browse files

msm8953-common: sepolicy: Fix treble neverallows

* Mark necessary types with data_between_core_and_vendor_violators
* Remove some deprecated rules

Change-Id: I6aa8c3457685146ee38317de2d173b8731d661c2
parent f5c43922
No related branches found
No related tags found
No related merge requests found
typeattribute hal_bluetooth_default data_between_core_and_vendor_violators;
allow hal_bluetooth_default bluetooth_data_file:dir search;
allow hal_bluetooth_default bluetooth_data_file:file r_file_perms;
allow hal_drm_default media_data_file:dir create_dir_perms;
allow hal_drm_default media_data_file:file create_file_perms;
allow hal_drm_widevine media_data_file:dir create_dir_perms;
allow hal_drm_widevine media_data_file:file create_file_perms;
typeattribute mm-qcamerad data_between_core_and_vendor_violators;
type_transition mm-qcamerad camera_data_file:sock_file camera_socket "cam_socket1";
type_transition mm-qcamerad camera_data_file:sock_file camera_socket "cam_socket2";
allow mm-qcamerad camera_socket:dir w_dir_perms;
......
typeattribute qti_init_shell data_between_core_and_vendor_violators;
allow qti_init_shell proc_touchpanel:dir { r_dir_perms setattr };
allow qti_init_shell proc_touchpanel:file { getattr setattr };
allow qti_init_shell bluetooth_data_file:file r_file_perms;
......
typeattribute tee data_between_core_and_vendor_violators;
# /data/goodix labeling
type_transition tee system_data_file:{ dir file } gx_fpd_data_file;
......
allow time_daemon time_data_file:file create_file_perms;
allow time_daemon time_data_file:dir w_dir_perms;
typeattribute ueventd data_between_core_and_vendor_violators;
allow ueventd fpc_sysfs:file rw_file_perms;
allow ueventd wifi_vendor_data_file:dir r_dir_perms;
allow ueventd wifi_vendor_data_file:file r_file_perms;
typeattribute vendor_init data_between_core_and_vendor_violators;
allow vendor_init {
bluetooth_data_file
camera_data_file
......
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment