android_device_xiaomi_sdm66.../sepolicy/vendor/init_fingerprint.te
TheScarastic 71abd10485
sdm660-common: Add sepolicy rule for goodix script
Change-Id: Ic8b7dba6a5660c17f5db1c743e5d22f31ae1b1b3
2019-08-15 15:31:17 +02:00

16 lines
723 B
Text

type init_fingerprint, domain;
type init_fingerprint_exec, exec_type, vendor_file_type, file_type;
typeattribute init_fingerprint data_between_core_and_vendor_violators;
# Allow for transition from init domain to init_fingerprint
init_daemon_domain(init_fingerprint)
# Shell script needs to execute /vendor/bin/sh
allow init_fingerprint vendor_shell_exec:file rx_file_perms;
allow init_fingerprint vendor_toolbox_exec:file rx_file_perms;
# Allow to delete file
allow init_fingerprint mnt_vendor_file:dir search;
allow init_fingerprint persist_drm_file:dir { read search open write remove_name };
allow init_fingerprint persist_drm_file:file { getattr unlink };
allow init_fingerprint system_data_file:file r_file_perms;