diff options
author | Davide Garberi <dade.garberi@gmail.com> | 2019-05-02 16:52:20 +0200 |
---|---|---|
committer | Davide Garberi <dade.garberi@gmail.com> | 2019-05-02 17:26:32 +0200 |
commit | 2c7ad967d1c9be71a50a9c27e336e180c035e648 (patch) | |
tree | 60e0b6d920cfaf3990dd42e254b09f2593b975ae /sepolicy/priv_app.te | |
parent | f03c601509bec9331de6829531d61e927e42f736 (diff) |
msm8996-common: sepolicy: Cleanup
* Add back the fstab contexts to prevent some vfat denials
* Remove a lot of not needed addresses
* Create a domain for double tap to wake to not let the powerhal access all the sysfs files
Change-Id: I44dfc5e9903eb562748215541f2d71f9a3d111d7
Diffstat (limited to 'sepolicy/priv_app.te')
-rw-r--r-- | sepolicy/priv_app.te | 12 |
1 files changed, 0 insertions, 12 deletions
diff --git a/sepolicy/priv_app.te b/sepolicy/priv_app.te deleted file mode 100644 index cc763ca..0000000 --- a/sepolicy/priv_app.te +++ /dev/null @@ -1,12 +0,0 @@ -allow priv_app adsprpcd_file:filesystem getattr; -allow priv_app { asec_apk_file bt_firmware_file cache_private_backup_file cgroup configfs mnt_media_rw_file radio_data_file }:dir r_dir_perms; -allow priv_app { file_contexts_file firmware_file hwservice_contexts_file keylayout_file mac_perms_file nonplat_service_contexts_file proc_interrupts proc_modules proc_stat seapp_contexts_file sepolicy_file service_contexts_file vendor_file vndservice_contexts_file }:file r_file_perms; -allow priv_app hal_memtrack_hwservice:hwservice_manager find; -allow priv_app device:dir open; - -binder_call(priv_app, hal_memtrack_default); - -# Clean up logspam -dontaudit priv_app device:dir read; -dontaudit priv_app proc_interrupts:file read; -dontaudit priv_app proc_modules:file read; |