sdm660: Disable sepolicy and Add minimal sepolicy

This commit is contained in:
Arian 2019-09-04 19:40:33 +02:00 committed by Max Weffers
parent 2d40c8bcf4
commit f66c3a3f04
No known key found for this signature in database
GPG key ID: 795F73D22FB93FAE
3 changed files with 14 additions and 4 deletions

View file

@ -277,10 +277,11 @@ PROTOBUF_SUPPORTED := true
BOARD_USES_QC_TIME_SERVICES := true
# SELinux
include device/qcom/sepolicy/sepolicy.mk
BOARD_SEPOLICY_DIRS += $(COMMON_PATH)/sepolicy/vendor
BOARD_PLAT_PUBLIC_SEPOLICY_DIR += $(COMMON_PATH)/sepolicy/public
BOARD_PLAT_PRIVATE_SEPOLICY_DIR += $(COMMON_PATH)/sepolicy/private
# include device/qcom/sepolicy/sepolicy.mk
# BOARD_SEPOLICY_DIRS += $(COMMON_PATH)/sepolicy/vendor
# BOARD_PLAT_PUBLIC_SEPOLICY_DIR += $(COMMON_PATH)/sepolicy/public
# BOARD_PLAT_PRIVATE_SEPOLICY_DIR += $(COMMON_PATH)/sepolicy/private
BOARD_SEPOLICY_DIRS += $(COMMON_PATH)/sepolicy-minimal
# Telephony
TARGET_USES_ALTERNATIVE_MANUAL_NETWORK_SELECT := true

4
sepolicy-minimal/file.te Normal file
View file

@ -0,0 +1,4 @@
type adsprpcd_file, file_type;
type bt_firmware_file, file_type;
type firmware_file, file_type;
type persist_file, file_type;

View file

@ -0,0 +1,5 @@
# Root Symlinks
/bt_firmware(/.*)? u:object_r:bt_firmware_file:s0
/dsp(/.*)? u:object_r:adsprpcd_file:s0
/firmware(/.*)? u:object_r:firmware_file:s0
/persist(/.*)? u:object_r:persist_file:s0