device_google_gs-common/storage/sepolicy
Randall Huang 0f4a0bb8a2 Storage: add selinux for ufs firmware upgrade event
avc:  denied  { execute_no_trans } for  comm="ufs_firmware_up" path="/vendor/bin/toybox_vendor" dev="dm-11" ino=380 scontext=u:r:ufs_firmware_update:s0 tcontext=u:object_r:vendor_toolbox_exec:s0 tclass=file permissive=1
avc:  denied  { read } for  comm="cat" name="vendor" dev="sysfs" ino=63193 scontext=u:r:ufs_firmware_update:s0 tcontext=u:object_r:sysfs_scsi_devices_0000:s0 tclass=file permissive=1
avc:  denied  { open } for  comm="cat" path="/sys/devices/platform/13200000.ufs/vendor" dev="sysfs" ino=63193 scontext=u:r:ufs_firmware_update:s0 tcontext=u:object_r:sysfs_scsi_devices_0000:s0 tclass=file permissive=1
avc:  denied  { search } for  comm="dd" name="block" dev="tmpfs" ino=12 scontext=u:r:ufs_firmware_update:s0 tcontext=u:object_r:block_device:s0 tclass=dir permissive=1
avc:  denied  { write } for  comm="dd" name="sda12" dev="tmpfs" ino=1139 scontext=u:r:ufs_firmware_update:s0 tcontext=u:object_r:ufs_internal_block_device:s0 tclass=blk_file permissive=1

Bug: 361093041
Test: NA
Change-Id: I54445d4543a733baae85cd408b433033dd93ec6b
Signed-off-by: Randall Huang <huangrandall@google.com>
2024-09-02 22:33:03 +00:00
..
device.te Allow userdata_exp partitions 2024-05-22 13:31:39 -07:00
dump_storage.te storage: dump UFS error history when capturing bugreport 2023-10-23 06:59:04 +00:00
dumpstate.te move dumpstate.te to sepolicy 2023-03-16 10:10:32 +08:00
e2fs.te storage: allow mkfs/fsck for vendor partitons 2024-08-29 01:10:11 +00:00
fastbootd.te storage: add fastbootd sepolicy 2023-04-20 09:08:07 +00:00
file.te Move sg_device related policy 2023-11-22 14:35:02 +08:00
file_contexts storage: extend cmd_logging sepolicy to new ufshc 2024-08-26 09:53:10 +08:00
fsck.te storage: allow mkfs/fsck for vendor partitons 2024-08-29 01:10:11 +00:00
genfs_contexts dump f2fs in gs-common 2022-09-23 14:01:11 +08:00
hal_health_storage_default.te Storage: fix hal_health_storage_default selinux error 2023-02-14 02:46:13 +00:00
init.te Storage: fix init avc denials 2023-02-14 16:25:54 +08:00
ufs_firmware_update.te Storage: add selinux for ufs firmware upgrade event 2024-09-02 22:33:03 +00:00
vendor_init.te Move sg_device related policy 2023-11-22 14:35:02 +08:00
vold.te storage: fix idle-maint avc denials. 2024-08-29 00:00:09 +00:00