From 951ce82739f1fcdf610e0a368d1f39c2067a1ebd Mon Sep 17 00:00:00 2001 From: Ted Lin Date: Fri, 24 Sep 2021 17:14:15 +0800 Subject: [PATCH] Using dontaudit to fix the avc on boot test avc: denied { search } for comm="kworker/6:2" name="google_battery" dev="debugfs" ino=32648 scontext=u:r:kernel:s0 tcontext=u:object_r:vendor_battery_debugfs:s0 tclass=dir permissive=1 Bug:200739262 Test: Check bugreport Change-Id: I50a96bab88f564fef0eda9a23bb77dc6ffed357f Signed-off-by: Ted Lin --- whitechapel/vendor/google/kernel.te | 2 ++ 1 file changed, 2 insertions(+) diff --git a/whitechapel/vendor/google/kernel.te b/whitechapel/vendor/google/kernel.te index 0156784e..c34e7f72 100644 --- a/whitechapel/vendor/google/kernel.te +++ b/whitechapel/vendor/google/kernel.te @@ -7,3 +7,5 @@ allow kernel per_boot_file:file r_file_perms; # memlat needs permision to create/delete perf events when hotplug on/off allow kernel self:capability2 perfmon; allow kernel self:perf_event cpu; + +dontaudit kernel vendor_battery_debugfs:dir search;