Commit Graph

7 Commits

Author SHA1 Message Date
pjgowtham
45f13bbf54 Update sepolicy 2025-04-05 20:11:07 +05:30
pjgowtham
bb78b50ad7 sepolicy: Label additional libraries 2024-11-08 14:23:53 +05:30
pjgowtham
39537e0e59 sepolicy: Change -isolated-app to -isolated_app_all 2024-08-20 08:41:09 +05:30
Albert I
879ea7ad59 sepolicy: Address denials for secure ADSP domain
Allow apps and camera HAL access to secure ADSP domain

Change-Id: Ibb1071299632ab53726638dbcc134d4bca59fc52
Signed-off-by: Adithya R <gh0strider.2k18.reborn@gmail.com>
2024-08-20 08:02:04 +05:30
pjgowtham
bc5e83a618 camera: Make fastrpc_shell_3 publicly available
* Used by GCAM for DSP-accelerated HDR processing
 * Arguably we should label /vendor/dsp/cdsp/fastrpc_shell_3 to
   same_process_hal_file like Pixels, but the partition is prebuilt thus
   we're unable to relabel it.
 * Copy the file to writable tmpfs, setup attributes and bind mount back
   to workaround the limitation.

[ghostrider-reborn]:
Allow adsp/cdsprpcd and neuralnetworks HAL to access fastrpc_shell_3

[kras edit:
 1. rename some contexts as per qva/kona
 2. extend to allow camera HAL and VPP service to access it as well]

Co-authored-by: Adithya R <gh0strider.2k18.reborn@gmail.com>
Change-Id: Ide90e5c7307d413db5ece736e859559f06679545
Signed-off-by: Adithya R <gh0strider.2k18.reborn@gmail.com>
2024-08-20 08:01:57 +05:30
pjgowtham
5d17e5edd6 sepolicy: Allow init to set camera watermark property 2024-08-20 08:00:57 +05:30
pjgowtham
47ac5d1add Initial sepolicy
Co-authored-by: Mashopy <eliasgheeraert@gmail.com>
Co-authored-by: Sugakesshaa <sugakesshaa@gmail.com>
2024-08-20 07:59:29 +05:30