From 61b72806e8b5778ff766229c4d6c20c53c47cafb Mon Sep 17 00:00:00 2001 From: Jidong Sun Date: Fri, 3 Jun 2022 17:16:47 -0700 Subject: [PATCH] gs101: Allow BootControl to access sysfs blow_ar Bug: 232277507 Signed-off-by: Jidong Sun Merged-In: I120672722a5ab8b5cadf0dce6d872e00c9fae642 Change-Id: I120672722a5ab8b5cadf0dce6d872e00c9fae642 --- whitechapel/vendor/google/file.te | 3 +++ whitechapel/vendor/google/genfs_contexts | 3 +++ whitechapel/vendor/google/hal_bootctl_default.te | 1 + 3 files changed, 7 insertions(+) diff --git a/whitechapel/vendor/google/file.te b/whitechapel/vendor/google/file.te index f951e2e3..e4292523 100644 --- a/whitechapel/vendor/google/file.te +++ b/whitechapel/vendor/google/file.te @@ -200,3 +200,6 @@ type sysfs_sjtag, fs_type, sysfs_type; userdebug_or_eng(` typeattribute sysfs_sjtag mlstrustedobject; ') + +# BootControl +type sysfs_bootctl, sysfs_type, fs_type; diff --git a/whitechapel/vendor/google/genfs_contexts b/whitechapel/vendor/google/genfs_contexts index 1569e07a..eeced333 100644 --- a/whitechapel/vendor/google/genfs_contexts +++ b/whitechapel/vendor/google/genfs_contexts @@ -373,3 +373,6 @@ genfscon sysfs /devices/platform/25c40000.etm u:object_r:sysfs_devices_cs_etm genfscon sysfs /devices/platform/25d40000.etm u:object_r:sysfs_devices_cs_etm:s0 genfscon sysfs /devices/platform/25e40000.etm u:object_r:sysfs_devices_cs_etm:s0 genfscon sysfs /devices/platform/25f40000.etm u:object_r:sysfs_devices_cs_etm:s0 + +# BootControl +genfscon sysfs /kernel/boot_control/blow_ar u:object_r:sysfs_bootctl:s0 diff --git a/whitechapel/vendor/google/hal_bootctl_default.te b/whitechapel/vendor/google/hal_bootctl_default.te index 30db79bd..a9f9cdea 100644 --- a/whitechapel/vendor/google/hal_bootctl_default.te +++ b/whitechapel/vendor/google/hal_bootctl_default.te @@ -1,3 +1,4 @@ allow hal_bootctl_default sda_block_device:blk_file rw_file_perms; allow hal_bootctl_default devinfo_block_device:blk_file rw_file_perms; allow hal_bootctl_default sysfs_ota:file rw_file_perms; +allow hal_bootctl_default sysfs_bootctl:file rw_file_perms;