diff --git a/sepolicy/file.te b/sepolicy/file.te index ab8fbcc..254c5d9 100644 --- a/sepolicy/file.te +++ b/sepolicy/file.te @@ -1,2 +1,3 @@ type app_efs_file, file_type; type sysfs_mdnie, fs_type, sysfs_type; +type biometrics_data_file, file_type, data_file_type; diff --git a/sepolicy/file_contexts b/sepolicy/file_contexts index 468f7f2..4e39d04 100644 --- a/sepolicy/file_contexts +++ b/sepolicy/file_contexts @@ -11,6 +11,7 @@ # Fingerprint /dev/vfsspi u:object_r:vfsspi_device:s0 +/data/biometrics(/.*)? u:object_r:biometrics_data_file:s0 # mDNIe /sys/devices/virtual/mdnie/mdnie/mode u:object_r:sysfs_mdnie:s0 diff --git a/sepolicy/fingerprintd.te b/sepolicy/fingerprintd.te index 8e4044c..7277e61 100644 --- a/sepolicy/fingerprintd.te +++ b/sepolicy/fingerprintd.te @@ -3,3 +3,6 @@ allow fingerprintd vfsspi_device:chr_file rw_file_perms; allow fingerprintd firmware_file:dir search; allow fingerprintd firmware_file:file r_file_perms; + +allow fingerprintd biometrics_data_file:dir rw_dir_perms; +allow fingerprintd biometrics_data_file:file create_file_perms;