device_google_gs-common/gcam_app/sepolicy/vendor
Dinesh Yadav 25b66183cf Allow tachyon service to make binder calls to gca
This permission is needed for tachyon service to call callbacks shared by clients of gxp/edgetpu device for tensor G5. As tachyon is present in pixel 6 where google_camera_app is not defined, I need to assign it here.

AVC Error seen when tachyon tries accessing GCA:
01-22 11:40:03.212  6987  6987 W com.google.edge: type=1400 audit(0.0:17): avc:  denied  { call } for  scontext=u:r:edgetpu_tachyon_server:s0 tcontext=u:r:google_camera_app:s0:c145,c256,c512,c768 tclass=binder permissive=0
01-23 07:12:26.424  4166  4166 W com.google.edge: type=1400 audit(0.0:254): avc:  denied  { call } for  scontext=u:r:edgetpu_tachyon_server:s0 tcontext=u:r:debug_camera_app:s0:c67,c257,c512,c768 tclass=binder permissive=0

Bug:391537620
Flag: EXEMPT updates device sepolicy only
Change-Id: I9dd78bd941b0de9057606409fd18632cc76f56b0
2025-02-02 20:02:52 -08:00
..
certs Add sepolicy for gcam app 2024-09-07 01:16:23 +00:00
debug_camera_app.te Allow tachyon service to make binder calls to gca 2025-02-02 20:02:52 -08:00
google_camera_app.te Allow tachyon service to make binder calls to gca 2025-02-02 20:02:52 -08:00
keys.conf Add sepolicy for gcam app 2024-09-07 01:16:23 +00:00
mac_permissions.xml Add sepolicy for gcam app 2024-09-07 01:16:23 +00:00