sdm660-common: sepolicy: multiple address denials

Coauthored-by: pix106 <sbordenave@gmail.com>
Signed-off-by: pix106 <sbordenave@gmail.com>
This commit is contained in:
sabarop 2023-03-10 13:37:52 +07:00 committed by pix106
parent 796762d620
commit 8c57947a57
4 changed files with 11 additions and 2 deletions

View file

@ -30,4 +30,11 @@ r_dir_file(hal_fingerprint_sdm660, firmware_file)
r_dir_file(hal_fingerprint_sdm660, sysfs_devfreq)
set_prop(hal_fingerprint_sdm660, hal_fingerprint_prop)
# allow hal_fingerprint_sdm660 default_android_hwservice:hwservice_manager find;
allow hal_fingerprint_sdm660 kcal_dev:dir search;
allow hal_fingerprint_sdm660 kcal_dev:file read;
allow hal_fingerprint_sdm660 mnt_vendor_file:dir search;
allow hal_fingerprint_sdm660 persist_drm_file:dir read;
# allow hal_fingerprint_sdm660 vendor_toolbox_exec:file execute_no_trans;
dontaudit hal_fingerprint_default storage_file:dir search;

View file

@ -1,2 +1,3 @@
allow hal_health_default sysfs_wakeup:dir r_dir_perms;
allow hal_health_default sysfs_wakeup:file r_file_perms;
allow hal_health_default sysfs:file { open read write getattr };

View file

@ -1 +1,2 @@
allow hal_light_default sysfs:file rw_file_perms;
allow hal_light_default sysfs:file rw_file_perms;
allow hal_light_default sysfs:file { open read write };

View file

@ -1,2 +1,2 @@
allow hvdcp vendor_sysfs_hvdcp:file r_file_perms;
allow hvdcp sysfs:file { open read };
allow hvdcp sysfs:file { open read getattr };