Add selinux policies for mounted modem parition

Bug: 178980032
Bug: 178979986
Bug: 179198083
Bug: 179198085
Bug: 178980065

Test: Check selinux denials
Change-Id: I7f826442d1536946d0e84aadfd80f679c0f4d6da
This commit is contained in:
Eddie Tashjian 2021-02-22 11:40:13 -08:00 committed by Salmax Chang
parent ef6e91692a
commit 78cd6eb78e
8 changed files with 17 additions and 34 deletions

View file

@ -1,16 +0,0 @@
# b/178979986
dontaudit cbd unlabeled:dir { getattr };
dontaudit cbd unlabeled:file { open };
dontaudit cbd unlabeled:file { read };
dontaudit cbd unlabeled:file { getattr };
dontaudit cbd unlabeled:lnk_file { read };
dontaudit cbd unlabeled:dir { search };
dontaudit cbd unlabeled:file { getattr };
dontaudit cbd unlabeled:dir { getattr };
dontaudit cbd unlabeled:lnk_file { read };
dontaudit cbd unlabeled:dir { search };
dontaudit cbd unlabeled:file { read };
dontaudit cbd unlabeled:file { open };
# b/179198083
dontaudit cbd unlabeled:file { ioctl };
dontaudit cbd unlabeled:file { ioctl };

View file

@ -16,5 +16,4 @@ dontaudit init device:chr_file { open };
dontaudit init device:chr_file { read write };
# b/180963348
dontaudit init overlayfs_file:chr_file { unlink };
dontaudit init unlabeled:dir { mounton };
dontaudit init overlayfs_file:file { rename };

View file

@ -1,19 +1,3 @@
# b/178980065
dontaudit rild unlabeled:dir { search };
dontaudit rild unlabeled:lnk_file { read };
dontaudit rild unlabeled:dir { search };
dontaudit rild unlabeled:lnk_file { read };
# b/179198085
dontaudit rild unlabeled:file { ioctl };
dontaudit rild unlabeled:file { open };
dontaudit rild unlabeled:file { read };
dontaudit rild unlabeled:file { getattr };
dontaudit rild unlabeled:file { lock };
dontaudit rild unlabeled:file { ioctl };
dontaudit rild unlabeled:file { open };
dontaudit rild unlabeled:file { read };
dontaudit rild unlabeled:file { getattr };
dontaudit rild unlabeled:file { lock };
# b/182320172
dontaudit rild sota_prop:file { map };
dontaudit rild sota_prop:file { getattr };