From e2e5733b0b21ee1af9572bb9edd55fa64be56350 Mon Sep 17 00:00:00 2001 From: Demon Singur Date: Sun, 23 Sep 2018 11:02:24 +0000 Subject: msm8996-common: sepolicy: let qseecomd access system files Solves the following denials. denied { read } for name="/" dev="sda17" ino=2 scontext=u:r:tee:s0 tcontext=u:object_r:system_data_file:s0 tclass=dir permissive=0 Change-Id: I767e4e12a6b4d72c0df0ff7cc018a8bcfe5edf18 --- sepolicy/tee.te | 3 +++ 1 file changed, 3 insertions(+) diff --git a/sepolicy/tee.te b/sepolicy/tee.te index a207d65..2b4d499 100644 --- a/sepolicy/tee.te +++ b/sepolicy/tee.te @@ -1,2 +1,5 @@ typeattribute tee data_between_core_and_vendor_violators; + allow tee fingerprintd_data_file:file { open read }; + +allow tee system_data_file:dir r_dir_perms; -- cgit v1.2.3