diff --git a/sepolicy/vendor/init_fingerprint.te b/sepolicy/vendor/init_fingerprint.te index 72a57a47..a5f01372 100644 --- a/sepolicy/vendor/init_fingerprint.te +++ b/sepolicy/vendor/init_fingerprint.te @@ -1,5 +1,6 @@ type init_fingerprint, domain; type init_fingerprint_exec, exec_type, vendor_file_type, file_type; +typeattribute init_fingerprint data_between_core_and_vendor_violators; # Allow for transition from init domain to init_fingerprint init_daemon_domain(init_fingerprint) @@ -11,4 +12,5 @@ allow init_fingerprint vendor_toolbox_exec:file rx_file_perms; # Allow to delete file allow init_fingerprint mnt_vendor_file:dir search; allow init_fingerprint persist_drm_file:dir { read search open write remove_name }; -allow init_fingerprint persist_drm_file:file { getattr unlink }; \ No newline at end of file +allow init_fingerprint persist_drm_file:file { getattr unlink }; +allow init_fingerprint system_data_file:file r_file_perms;