aboutsummaryrefslogtreecommitdiff
path: root/sepolicy/hal_fingerprint_default.te
blob: bb00fcadcd51a68e2bc3bf1305eb0fda5ff74ba7 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
typeattribute hal_fingerprint_default socket_between_core_and_vendor_violators;
typeattribute hal_fingerprint_default data_between_core_and_vendor_violators;

r_dir_file(hal_fingerprint_default, firmware_file)

allow hal_fingerprint_default sysfs_fingerprint:dir r_dir_perms;
allow hal_fingerprint_default sysfs_fingerprint:file rw_file_perms;

allow hal_fingerprint_default tee_device:chr_file rw_file_perms;
allow hal_fingerprint_default firmware_file:file r_file_perms;

allow hal_fingerprint_default { fpc_data_file system_data_file }:dir create_dir_perms;
allow hal_fingerprint_default fpc_data_file:sock_file { create setattr unlink };
allow hal_fingerprint_default fingerprintd_data_file:dir rw_dir_perms;
allow hal_fingerprint_default fingerprintd_data_file:file create_file_perms;
allow hal_fingerprint_default vfat:dir { read search };
allow hal_fingerprint_default vfat:file { getattr open read setattr };