Commit graph

2972 commits

Author SHA1 Message Date
Mark Chang
a1aab562ca [DO NOT MERGE] sepolicy: Add "dontaudit" for twoshay dac_override.
Bug: 193224954
Test: build pass and boot to home
Signed-off-by: Mark Chang <changmark@google.com>
Change-Id: I5c330564cc026e113c5d33d5d093dbcdb3ede5e4
2021-07-30 01:49:59 +00:00
Jaineel Mehta
0474bcf10e Add vendor SELinux denial to allowlist
Change-Id: If7435e9c62811ef3c9757f22f06018c32a8d3597
Test: None
Bug: 194281028
2021-07-29 21:23:34 +00:00
TreeHugger Robot
0635946ef7 Merge "gs101: Allow camera hal to create file in persist camera folder" into sc-dev am: 750888bc5b am: c28011e995 am: 29b21cc5d2
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15354010

Change-Id: Id8a54e2c04c626e99eb32058a0c3b801e8863ca7
2021-07-29 09:43:31 +00:00
TreeHugger Robot
275b077a0f Merge "gs101: Allow camera hal to create file in persist camera folder" into sc-dev am: 750888bc5b am: 8ab71529ce am: 163e32e837
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15354010

Change-Id: I0a97cbf5d5bc5a0b5ce7a9345128c9c2d7f60de3
2021-07-29 09:43:22 +00:00
TreeHugger Robot
29b21cc5d2 Merge "gs101: Allow camera hal to create file in persist camera folder" into sc-dev am: 750888bc5b am: c28011e995
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15354010

Change-Id: I7222c4a05ca838048d1add52b330612ed2ae7e56
2021-07-29 09:27:50 +00:00
TreeHugger Robot
163e32e837 Merge "gs101: Allow camera hal to create file in persist camera folder" into sc-dev am: 750888bc5b am: 8ab71529ce
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15354010

Change-Id: I125b86fa619bba363534452b74a6149922e58bf0
2021-07-29 09:27:30 +00:00
TreeHugger Robot
8ab71529ce Merge "gs101: Allow camera hal to create file in persist camera folder" into sc-dev am: 750888bc5b
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15354010

Change-Id: Ia321b3fa069583efadda94caab9b72a484f5631b
2021-07-29 09:14:51 +00:00
TreeHugger Robot
c28011e995 Merge "gs101: Allow camera hal to create file in persist camera folder" into sc-dev am: 750888bc5b
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15354010

Change-Id: Ic99958700c8b28e81404a15b1446f7108fa7f7c6
2021-07-29 09:13:58 +00:00
TreeHugger Robot
750888bc5b Merge "gs101: Allow camera hal to create file in persist camera folder" into sc-dev 2021-07-29 08:40:36 +00:00
Michael Eastwood
8d6333024b Merge "Allow hal_dumpstate_default to access vendor_camera_debug_prop" into sc-dev am: 9bfbb3c0d4 am: ebd0f6cb6d am: 0ad7f649ad
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15406130

Change-Id: Iaac1d80e46114be9885c5e87ea2450951b49a971
2021-07-28 22:20:04 +00:00
Michael Eastwood
4dda9eab2c Merge "Allow hal_dumpstate_default to access vendor_camera_debug_prop" into sc-dev am: 9bfbb3c0d4 am: 8cda72b001 am: 9afedc311d
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15406130

Change-Id: Id038cd7b8e907f7c07cc18d872ede3d14da98485
2021-07-28 22:19:57 +00:00
Michael Eastwood
0ad7f649ad Merge "Allow hal_dumpstate_default to access vendor_camera_debug_prop" into sc-dev am: 9bfbb3c0d4 am: ebd0f6cb6d
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15406130

Change-Id: I2c086cd782e7f33cdcafeba632d0e4fda4ce291a
2021-07-28 22:07:22 +00:00
Michael Eastwood
9afedc311d Merge "Allow hal_dumpstate_default to access vendor_camera_debug_prop" into sc-dev am: 9bfbb3c0d4 am: 8cda72b001
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15406130

Change-Id: Idd9adbbb02ae75e641b1b867f6580799ef3c8a3c
2021-07-28 22:07:03 +00:00
Michael Eastwood
8cda72b001 Merge "Allow hal_dumpstate_default to access vendor_camera_debug_prop" into sc-dev am: 9bfbb3c0d4
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15406130

Change-Id: Ida4fbd33da5d2ded18be388f989e27936b3bd955
2021-07-28 21:55:14 +00:00
Michael Eastwood
ebd0f6cb6d Merge "Allow hal_dumpstate_default to access vendor_camera_debug_prop" into sc-dev am: 9bfbb3c0d4
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15406130

Change-Id: I2f951ec888186bd93fa3a671be8bd35dc61826fc
2021-07-28 21:53:39 +00:00
Michael Eastwood
9bfbb3c0d4 Merge "Allow hal_dumpstate_default to access vendor_camera_debug_prop" into sc-dev 2021-07-28 21:36:38 +00:00
Michael Eastwood
30bd5e8ed6 Allow hal_dumpstate_default to access vendor_camera_debug_prop
Bug: 193365129
Test: atest com.google.android.selinux.pts.SELinuxTest#scanBugreport
Change-Id: I43e389d46e8116844bb9ca4259e5ea28e86c50f4
2021-07-27 17:22:47 -07:00
TreeHugger Robot
37dd4c59ea Merge "Add AoC wakeup stats to dump state" into sc-dev am: fead41d573 am: bac578c7e4 am: 5bcb5ceb2b
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15393321

Change-Id: I1df4322f9b0d0b5911d397394e90d1aaab48363a
2021-07-27 20:29:20 +00:00
TreeHugger Robot
dd2a70ad2b Merge "Add AoC wakeup stats to dump state" into sc-dev am: fead41d573 am: a96235b57b am: c5e4cd5b60
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15393321

Change-Id: I296349786c6756594b03f906eadf2bcf2fbb40e5
2021-07-27 20:28:31 +00:00
TreeHugger Robot
5bcb5ceb2b Merge "Add AoC wakeup stats to dump state" into sc-dev am: fead41d573 am: bac578c7e4
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15393321

Change-Id: I142abfcc18ffc38f6b84f8214e5492feda9c783f
2021-07-27 20:09:39 +00:00
TreeHugger Robot
c5e4cd5b60 Merge "Add AoC wakeup stats to dump state" into sc-dev am: fead41d573 am: a96235b57b
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15393321

Change-Id: I19d2204c1328da774d2bb640df9e9fb4e4656e71
2021-07-27 20:08:00 +00:00
TreeHugger Robot
a96235b57b Merge "Add AoC wakeup stats to dump state" into sc-dev am: fead41d573
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15393321

Change-Id: Ia4cb5725b748fcccd901a28ca2e3dbb354c3e44e
2021-07-27 19:44:07 +00:00
TreeHugger Robot
bac578c7e4 Merge "Add AoC wakeup stats to dump state" into sc-dev am: fead41d573
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15393321

Change-Id: I885c2707858cd57aece41f8b91f3267a91607710
2021-07-27 19:42:54 +00:00
TreeHugger Robot
fead41d573 Merge "Add AoC wakeup stats to dump state" into sc-dev 2021-07-27 19:23:06 +00:00
Jack Wu
830183abd8 sepolicy: gs101: allows pixelstat to access pca file nodes am: d6c1a50bba am: e0c7fa7433 am: 65c825d2fd
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15360184

Change-Id: I3caf230e756c5939c55db78dc1d983d546106321
2021-07-27 03:01:46 +00:00
Jack Wu
7a9774e4a9 sepolicy: gs101: allows pixelstat to access pca file nodes am: d6c1a50bba am: 2c79c75768 am: c5964bf33a
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15360184

Change-Id: Ic3e0e44452cd042a6015fff5ba9f5f4071de6de9
2021-07-27 03:01:35 +00:00
Jack Wu
65c825d2fd sepolicy: gs101: allows pixelstat to access pca file nodes am: d6c1a50bba am: e0c7fa7433
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15360184

Change-Id: I76cd3f1374d205bf2f6b835451735e7f0633faad
2021-07-27 02:47:51 +00:00
Jack Wu
c5964bf33a sepolicy: gs101: allows pixelstat to access pca file nodes am: d6c1a50bba am: 2c79c75768
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15360184

Change-Id: I1dcf34ae4ab3fb1a9fda23334d4ed7e0f4723b2c
2021-07-27 02:47:03 +00:00
Jack Wu
2c79c75768 sepolicy: gs101: allows pixelstat to access pca file nodes am: d6c1a50bba
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15360184

Change-Id: Ic3efb76715139aa335995b95e7756f23b5de226c
2021-07-27 02:29:16 +00:00
Jack Wu
e0c7fa7433 sepolicy: gs101: allows pixelstat to access pca file nodes am: d6c1a50bba
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15360184

Change-Id: I904398c0eb47626b0398a5cb1fcea961ef35e6fb
2021-07-27 02:26:35 +00:00
Max Kogan
5374497df5 Add AoC wakeup stats to dump state
Need add support for wakeup stats to track AoC to AP messages
resulting in frequent wake-ups.

Bug: 192668026
Change-Id: I073406cc101e114135c863b0e0b86357e93c0415
2021-07-26 22:45:16 +00:00
Jack Wu
d6c1a50bba sepolicy: gs101: allows pixelstat to access pca file nodes
07-23 14:24:45.512  1000  3001  3001 I pixelstats-vend: type=1400 audit(0.0:10): avc: denied { open } for path="/sys/devices/platform/10d50000.hsi2c/i2c-5/5-0057/chg_stats" dev="sysfs" ino=72245 scontext=u:r:pixelstats_vendor:s0 tcontext=u:object_r:sysfs:s0 tclass=file permissive=1
07-23 14:24:45.512  1000  3001  3001 I pixelstats-vend: type=1400 audit(0.0:11): avc: denied { getattr } for path="/sys/devices/platform/10d50000.hsi2c/i2c-5/5-0057/chg_stats" dev="sysfs" ino=72245 scontext=u:r:pixelstats_vendor:s0 tcontext=u:object_r:sysfs:s0 tclass=file permissive=1
07-23 14:24:57.536  1000  3001  3001 I pixelstats-vend: type=1400 audit(0.0:12): avc: denied { read } for name="chg_stats" dev="sysfs" ino=72245 scontext=u:r:pixelstats_vendor:s0 tcontext=u:object_r:sysfs:s0 tclass=file permissive=1
07-23 14:24:57.536  1000  3001  3001 I pixelstats-vend: type=1400 audit(0.0:13): avc: denied { open } for path="/sys/devices/platform/10d50000.hsi2c/i2c-5/5-0057/chg_stats" dev="sysfs" ino=72245 scontext=u:r:pixelstats_vendor:s0 tcontext=u:object_r:sysfs:s0 tclass=file permissive=1
07-23 14:24:57.536  1000  3001  3001 I pixelstats-vend: type=1400 audit(0.0:14): avc: denied { getattr } for path="/sys/devices/platform/10d50000.hsi2c/i2c-5/5-0057/chg_stats" dev="sysfs" ino=72245 scontext=u:r:pixelstats_vendor:s0 tcontext=u:object_r:sysfs:s0 tclass=file permissive=1
07-23 14:24:57.536  1000  3001  3001 I pixelstats-vend: type=1400 audit(0.0:15): avc: denied { write } for name="chg_stats" dev="sysfs" ino=72245 scontext=u:r:pixelstats_vendor:s0 tcontext=u:object_r:sysfs:s0 tclass=file permissive=1

Bug: 194386750
Test: manually test, no avc: denied
Signed-off-by: Jack Wu <wjack@google.com>
Change-Id: I1a16edb5bb7820f62b3ce598aa50eba2d9455927
2021-07-24 06:42:39 +00:00
TreeHugger Robot
e21c3638c2 Merge "Add SE policies for memtrack HAL" into sc-dev am: b3225f0f6c am: 5cdaa6a45f am: df6e6f021b
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15283133

Change-Id: I485f1604622b6c93489499d5f875dfad77d8b3be
2021-07-23 22:01:20 +00:00
TreeHugger Robot
fd0b83ae69 Merge "Add SE policies for memtrack HAL" into sc-dev am: b3225f0f6c am: cd16e38ab2 am: 10d4b623ec
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15283133

Change-Id: I02645c5c2c66f0e2141ec3969c559816cb6f7602
2021-07-23 22:00:46 +00:00
TreeHugger Robot
df6e6f021b Merge "Add SE policies for memtrack HAL" into sc-dev am: b3225f0f6c am: 5cdaa6a45f
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15283133

Change-Id: I7959cb1161e4a8e86b7344f487fb63e6bbb4e17b
2021-07-23 21:43:22 +00:00
TreeHugger Robot
10d4b623ec Merge "Add SE policies for memtrack HAL" into sc-dev am: b3225f0f6c am: cd16e38ab2
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15283133

Change-Id: I9a34df30f890f98711cdea42b6fc75492e66ddb4
2021-07-23 21:42:04 +00:00
TreeHugger Robot
cd16e38ab2 Merge "Add SE policies for memtrack HAL" into sc-dev am: b3225f0f6c
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15283133

Change-Id: I552351e0eac65c20d795b1682852896943f948c8
2021-07-23 21:24:50 +00:00
TreeHugger Robot
5cdaa6a45f Merge "Add SE policies for memtrack HAL" into sc-dev am: b3225f0f6c
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15283133

Change-Id: Iff4c3146f074c8dc40af1598002629bd9c0d46f3
2021-07-23 21:24:35 +00:00
TreeHugger Robot
b3225f0f6c Merge "Add SE policies for memtrack HAL" into sc-dev 2021-07-23 20:52:52 +00:00
Ankit Goyal
0f9820830c Add SE policies for memtrack HAL
Bug: 191966412
Test: adb shell dumpsys meminfo
Change-Id: Ia7ec64840d2bb7c3ae0d61304e109d2ceb9e5f78
2021-07-24 02:18:36 +08:00
Max Shi
aa837658f4 Allow USF sensor HAL to read camera persist files. am: 0bd50d1eb5 am: 0f58b38401 am: fdd51fb96e
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15352099

Change-Id: Ia23cec46b858b19c9458bece061aa66f348248bc
2021-07-23 00:21:01 +00:00
Max Shi
b29ac33269 Allow USF sensor HAL to read camera persist files. am: 0bd50d1eb5 am: 50486c63f3 am: c53dbeaf0e
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15352099

Change-Id: I7eaaac9df9f2910baed5f07f3e2359b0953641b5
2021-07-23 00:20:44 +00:00
Max Shi
fdd51fb96e Allow USF sensor HAL to read camera persist files. am: 0bd50d1eb5 am: 0f58b38401
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15352099

Change-Id: Id8dae3cb84473c38fdedcb15437e566e941edbde
2021-07-23 00:04:03 +00:00
Max Shi
c53dbeaf0e Allow USF sensor HAL to read camera persist files. am: 0bd50d1eb5 am: 50486c63f3
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15352099

Change-Id: I79a5f932ccafd7dafa28f6978d524b4eccf809a4
2021-07-23 00:03:25 +00:00
Max Shi
50486c63f3 Allow USF sensor HAL to read camera persist files. am: 0bd50d1eb5
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15352099

Change-Id: Id31975a653e79362c0dea9a86b52944d340f2fee
2021-07-22 23:46:11 +00:00
Max Shi
0f58b38401 Allow USF sensor HAL to read camera persist files. am: 0bd50d1eb5
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15352099

Change-Id: I585215a1e0266ebb52ccec18834c4f0e68ec6c69
2021-07-22 23:45:02 +00:00
Badhri Jagan Sridharan
95c0544a0a Merge "Update Usb hal permissions to allow pushing overheat suez events" into sc-dev am: 49804d8d6f am: 00b89f5d8d am: f0f0de5d84
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15283349

Change-Id: I477c9d19208646e3fffdd479e41f753038194ed9
2021-07-22 21:27:20 +00:00
Badhri Jagan Sridharan
0dc4da3547 Merge "Update Usb hal permissions to allow pushing overheat suez events" into sc-dev am: 49804d8d6f am: 31b15ff2bb am: f83fca5b70
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15283349

Change-Id: I0c93e6058984873ea8d7ce101e6d65e48f1c9fba
2021-07-22 21:27:08 +00:00
Max Shi
0bd50d1eb5 Allow USF sensor HAL to read camera persist files.
USF sensor HAL requires access to camera persist files to determine if
the camera module has been replaced (e.g. via repair), which may affect
calibration of the magnetometer.

Bug: 193727762
Test: Verify sensor HAL can open and read files under
Test: /mnt/vendor/persist/camera/
Change-Id: Icb9d7a46bf8465e1a72054ac9c8493ba18445ef3
2021-07-22 21:11:44 +00:00
Badhri Jagan Sridharan
f0f0de5d84 Merge "Update Usb hal permissions to allow pushing overheat suez events" into sc-dev am: 49804d8d6f am: 00b89f5d8d
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15283349

Change-Id: Iff45d60431f1b3bcdeb267c317d78b124bcf4748
2021-07-22 21:10:02 +00:00