android_device_samsung_msm8.../sepolicy/common/init.te
Kevin F. Haggerty a5d5045f45 msm8226-common: sepolicy: Clean up
* Group policy statements better
* Nuke unneeded allows

Change-Id: Ibc1fd4debe8c95005a6dd54e1428d6365248bd80
2019-10-16 12:30:55 +02:00

51 lines
1.1 KiB
Text

# This really is necessary for init.qcom.rc to manually restorecon the
# /data/data/com.android.providers.telephony/(databases|shared_prefs)
# symlinks. Without the manual restorecon, we would have to allow rild
# to read any system_data_file:lnk_file.
selinux_check_context(init)
allow init {
sysfs_iio
sysfs_sec_tsp
sysfs_sensors
}:lnk_file read;
allow init {
sysfs_audio
sysfs_batteryinfo
sysfs_bluetooth_writable
sysfs_camera
sysfs_graphics
sysfs_hal_pwr
sysfs_iio
sysfs_input
sysfs_kgsl
sysfs_leds
sysfs_msmuart_file
sysfs_sec_bamdmux
sysfs_sec_barcode_emul
sysfs_sec_epen
sysfs_sec_ir
sysfs_sec_key
sysfs_sec_led
sysfs_sec_switch
sysfs_sec_thermistor
sysfs_sec_touchkey
sysfs_sec_tsp
sysfs_sensors
sysfs_socinfo
sysfs_usb_otg
sysfs_usb_storage_gadget
sysfs_wifi_writeable
}:file setattr;
allow init {
sysfs_cpu_boost
sysfs_devices_system_cpu
sysfs_lowmemorykiller
sysfs_mmc_host
sysfs_msm_perf
sysfs_msm_power
sysfs_sec_key
sysfs_thermal
}:file w_file_perms;