diff --git a/tracking_denials/hal_neuralnetworks_darwinn.te b/tracking_denials/hal_neuralnetworks_darwinn.te new file mode 100644 index 00000000..52568fc6 --- /dev/null +++ b/tracking_denials/hal_neuralnetworks_darwinn.te @@ -0,0 +1,11 @@ +# b/182524105 +dontaudit hal_neuralnetworks_darwinn tmpfs:file { open }; +dontaudit hal_neuralnetworks_darwinn tmpfs:file { write }; +dontaudit hal_neuralnetworks_darwinn tmpfs:file { map }; +dontaudit hal_neuralnetworks_darwinn tmpfs:file { write }; +dontaudit hal_neuralnetworks_darwinn tmpfs:file { read }; +dontaudit hal_neuralnetworks_darwinn tmpfs:file { open }; +dontaudit hal_neuralnetworks_darwinn tmpfs:file { map }; +dontaudit hal_neuralnetworks_darwinn tmpfs:file { read }; +dontaudit hal_neuralnetworks_darwinn tmpfs:file { read }; +dontaudit hal_neuralnetworks_darwinn tmpfs:file { read }; diff --git a/tracking_denials/hal_sensors_default.te b/tracking_denials/hal_sensors_default.te index c52d7136..b3331836 100644 --- a/tracking_denials/hal_sensors_default.te +++ b/tracking_denials/hal_sensors_default.te @@ -53,3 +53,7 @@ dontaudit hal_sensors_default device:dir { read }; dontaudit hal_sensors_default device:dir { watch }; dontaudit hal_sensors_default servicemanager:binder { transfer }; dontaudit hal_sensors_default aoc_device:chr_file { open }; +# b/182523946 +dontaudit hal_sensors_default chre_socket:sock_file { write }; +dontaudit hal_sensors_default chre:unix_stream_socket { connectto }; +dontaudit hal_sensors_default chre:unix_stream_socket { connectto }; diff --git a/tracking_denials/init.te b/tracking_denials/init.te index 4371b751..29744e9a 100644 --- a/tracking_denials/init.te +++ b/tracking_denials/init.te @@ -17,3 +17,5 @@ dontaudit init device:chr_file { read write }; # b/180963348 dontaudit init overlayfs_file:chr_file { unlink }; dontaudit init overlayfs_file:file { rename }; +# b/182524202 +dontaudit init mnt_vendor_file:dir { mounton }; diff --git a/tracking_denials/installd.te b/tracking_denials/installd.te new file mode 100644 index 00000000..9ef8051f --- /dev/null +++ b/tracking_denials/installd.te @@ -0,0 +1,4 @@ +# b/182524203 +dontaudit installd modem_img_file:filesystem { quotaget }; +dontaudit installd modem_img_file:filesystem { quotaget }; +dontaudit installd modem_img_file:filesystem { quotaget };