Merge "init: change overlayfs_file rule to dontaudit" into sc-dev
This commit is contained in:
commit
3582ffbdbf
1 changed files with 3 additions and 4 deletions
7
whitechapel/vendor/google/init.te
vendored
7
whitechapel/vendor/google/init.te
vendored
|
@ -19,7 +19,6 @@ allow init per_boot_file:file ioctl;
|
||||||
allowxperm init per_boot_file:file ioctl { F2FS_IOC_SET_PIN_FILE };
|
allowxperm init per_boot_file:file ioctl { F2FS_IOC_SET_PIN_FILE };
|
||||||
allow init sysfs_scsi_devices_0000:file w_file_perms;
|
allow init sysfs_scsi_devices_0000:file w_file_perms;
|
||||||
|
|
||||||
userdebug_or_eng(`
|
# Workaround for b/193113005 that modem_img unlabeled after disable-verity
|
||||||
allow init overlayfs_file:file { rename };
|
dontaudit init overlayfs_file:file { rename };
|
||||||
allow init overlayfs_file:chr_file { unlink };
|
dontaudit init overlayfs_file:chr_file { unlink };
|
||||||
')
|
|
||||||
|
|
Loading…
Add table
Add a link
Reference in a new issue