Commit graph

11403 commits

Author SHA1 Message Date
Ahmed ElArabawy
d191543cb2 Merge "ssr_detector: provide wlan firmware version" into sc-dev am: 4a5d646504
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/14197331

Change-Id: I1a439519d7d2150983b17e606126a95cfb2d3181
2021-04-16 00:04:32 +00:00
Max Shi
0fd9e3970a Add sepolicy for sensor HAL accessing AOC reset sysfs node. am: 55bd05960f
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/14167428

Change-Id: I63c1b97911f6e853dcc41f3ab1ebde385235d3a5
2021-04-16 00:02:00 +00:00
Ahmed ElArabawy
8e2e50c07a Merge "ssr_detector: provide wlan firmware version" into sc-dev am: 4a5d646504
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/14197331

Change-Id: Ice4ffb15a7f0f042b9a57bfad404a204fcf94bd8
2021-04-16 00:00:49 +00:00
Adam Shih
96757470a4 remove factory files from user ROM am: e5a49a9ae3
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101/+/14185477

Change-Id: I0d6be8f5b2d1ffd349d05a7aacb0648d006ed004
2021-04-16 00:00:27 +00:00
qinyiyan
4585613637 Update sepolicy for the egetpu_logging service to access the sysfs.
Test: make selinux_policy -j128 and pushed sepolicy modules to the
device. The avc denials are gone.
Bug:185448476

Change-Id: Ibff482b64a6cdbc5a7967bb8cc4281c8bd0b5b98
2021-04-15 23:57:32 +00:00
Max Shi
55bd05960f Add sepolicy for sensor HAL accessing AOC reset sysfs node.
Bug: 184858369
Test: Verify sensor HAL process can write to the sysfs node.
Change-Id: I9700323bafa413b88f25e4117499bcc936bce9c6
2021-04-15 23:37:15 +00:00
Ahmed ElArabawy
4a5d646504 Merge "ssr_detector: provide wlan firmware version" into sc-dev 2021-04-15 23:32:26 +00:00
Adam Shih
e5a49a9ae3 remove factory files from user ROM
Bug: 168013500
Test: user ROM no longer contains factory files while factory ROM has
them.

Change-Id: I084a0767f1f55e11c8f21560ebfd115e0e52b79d
2021-04-15 23:14:49 +00:00
rioskao
a0a4a7f2a2 Allow ssr_detector to read aoc version property
sst_detector would need firmware version in order to
parse dump information with corresponding symbol of the version

04-15 13:05:39.196 28845 28864 W libc    : Access denied finding property "vendor.aoc.firmware.version"

Bug: 185473950
Test: validate by force ramdump of aoc.

Change-Id: Iebf62b97897ccc2a84a174dafca90f446b771915
2021-04-15 22:53:18 +08:00
Jenny Ho
c15e4b72f2 Merge "Allow to dump pps-dc" into sc-dev am: 9ec58d031a
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/14140257

Change-Id: Iacaa2d56fc4ace8a91cc2e341f4f1f20dff5a6af
2021-04-15 11:21:24 +00:00
Jenny Ho
2dd8bf92c6 Merge "Allow to dump pps-dc" into sc-dev am: 9ec58d031a
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/14140257

Change-Id: I36e4f653f1bfcab9b5c884e452ec053894177d99
2021-04-15 11:16:01 +00:00
Ted Lin
d87b67ddd6 ueventd.rc: set system ownership for direct charging am: 41a0f99d0c
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101/+/14159232

Change-Id: I57696aac64cbe33b5db14537137d7d7d333c2ca6
2021-04-15 11:16:01 +00:00
Jenny Ho
9ec58d031a Merge "Allow to dump pps-dc" into sc-dev 2021-04-15 10:26:57 +00:00
Ted Lin
41a0f99d0c ueventd.rc: set system ownership for direct charging
Bug:185041587
Test: ls -al /dev/log*
Change-Id: I02c635c424b37e9e9767d508397fc9c5673925e2
Signed-off-by: Ted Lin <tedlin@google.com>
2021-04-15 10:26:57 +00:00
Roger Wang
da8122c867 ssr_detector: provide wlan firmware version
In this commit, we allow ssr_detector to collect
wlan firmware version from property. This information
is useful for doing SSR statistic.

avc log:
avc: denied { read } for comm="FileObserver" name="u:object_r:vendor_wifi_version:s0" dev="tmpfs" ino=324 scontext=u:r:ssr_detector_app:s0:c512,c768 tcontext=u:object_r:vendor_wifi_version:s0 tclass=file permissive=0

Bug: 185457155
Test: check firmware version can be collected.
ssrInfo SSRInfo{mSubsystem='wlan', mCrashReason='Dongle_Trap_traptest+0x8_pcidev_handle_user_disconnect+0xbb', mRamdumpFile='coredump_wlan_2021-04-15_18-01-54.bin', mTimeStamp='2021-04-15_18-01-54', mBuildVersion='20.25.423.4', mUID='05a6029c-4f74-3172-9a3f-7fa8e8bcc6c4', mExtraBuildVersion=''}, uid 05a6029c-4f74-3172-9a3f-7fa8e8bcc6c4

Change-Id: Ibf2ce8f0c7a7dd752963c738bf28da14034cc209
2021-04-15 18:08:52 +08:00
Charlie Chen
bbe9ffe0e8 Merge changes from topic "remove_video_system_heap" into sc-dev am: 742daf873c
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/14187064

Change-Id: If5d1cecad9d65888364eb43f4ba2d5b296452058
2021-04-15 09:11:41 +00:00
Charlie Chen
89e6693435 Merge changes from topic "remove_video_system_heap" into sc-dev am: 742daf873c
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/14187064

Change-Id: I98048923a0865e28d6b67c5efffce8b8295371c5
2021-04-15 08:59:10 +00:00
Charlie Chen
742daf873c Merge changes from topic "remove_video_system_heap" into sc-dev
* changes:
  Formatting file_contexts
  remove video_system_heap
2021-04-15 07:56:19 +00:00
TreeHugger Robot
6b2103ed0c Merge "Allow power stats HAL read uwb power_stats sysfs node" into sc-dev am: a4d458026a
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/14189309

Change-Id: I67474bd39ad5bb247df79ad27d88cb14b7bc8955
2021-04-15 06:57:10 +00:00
TreeHugger Robot
29e20026d9 Merge "Allow power stats HAL read uwb power_stats sysfs node" into sc-dev am: a4d458026a
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/14189309

Change-Id: I4e5d42b5a2f8e7a613fe6276196c56f4404ecb1e
2021-04-15 06:51:17 +00:00
TreeHugger Robot
a4d458026a Merge "Allow power stats HAL read uwb power_stats sysfs node" into sc-dev 2021-04-15 06:26:00 +00:00
TeYuan Wang
66fd237730 thermal: add sepolicy rule to access ODPM sysfs
Bug: 170653634
Test: test thermal behavior under enforcing mode
Change-Id: I37500de957cc2375213f1d0416a88356f36d2367
2021-04-15 05:55:10 +00:00
Benjamin Schwartz
09c2e2802a Merge "Allow power stats HAL to read gnss stats" into sc-dev am: 948f48997b
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/14106551

Change-Id: I3668916da82cf5f5ec4f31710fd91ccdd0ee6a39
2021-04-15 05:27:07 +00:00
Vova Sharaienko
350b5e41c8 Merge "Stats: removed obsolete IStats HIDL sepolicies" into sc-dev am: d7e81afb35
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/14192518

Change-Id: I8a06090a82aa3c3fad6797af240a69bbccbcef90
2021-04-15 05:26:51 +00:00
Chris Lu
bbabdc9504 display: remove dontaudit for hal_memtrack_default am: 86582e6ce0
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/14187062

Change-Id: I71b0e37954933ed6f0fae9eb18e57d3ef7d5ccf2
2021-04-15 05:26:29 +00:00
Benjamin Schwartz
93ca4737a6 powerstats: Add GPS state residency am: 3cc937165b
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101/+/14106467

Change-Id: I76e52507e36936de5edd2f47570223a0e18e7e19
2021-04-15 05:21:05 +00:00
Benjamin Schwartz
34cdd13183 Merge "Allow power stats HAL to read gnss stats" into sc-dev am: 948f48997b
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/14106551

Change-Id: I677e694c52a44e7931f45017ce05ab8f1f652e9a
2021-04-15 05:21:05 +00:00
Vova Sharaienko
52d208d3ed Merge "Stats: removed obsolete IStats HIDL sepolicies" into sc-dev am: d7e81afb35
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/14192518

Change-Id: I92c7a1f4705b9d4f85dcba7e3cda05d0fd349769
2021-04-15 05:20:51 +00:00
Chris Lu
fd0a28c8d1 display: remove dontaudit for hal_memtrack_default am: 86582e6ce0
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/14187062

Change-Id: I6de95dadec78a8a7ba9a31ca7817a52e93bf6925
2021-04-15 05:20:38 +00:00
Benjamin Schwartz
948f48997b Merge "Allow power stats HAL to read gnss stats" into sc-dev 2021-04-15 05:08:16 +00:00
Benjamin Schwartz
3cc937165b powerstats: Add GPS state residency
Bug: 181577366
Test: dumpsys android.hardware.power.stats.IPowerStats/default
Change-Id: I0fa4356542a838618e712e9b0abbf02b99db7f3a
2021-04-15 05:08:16 +00:00
Vova Sharaienko
d7e81afb35 Merge "Stats: removed obsolete IStats HIDL sepolicies" into sc-dev 2021-04-15 05:01:22 +00:00
Charlie Chen
01a33d0cb7 Formatting file_contexts
Test: Youtube playback, video recording, ExoPlayer playback
Bug: 181380463
Change-Id: I9eeb08987794336aafa7945a9d648a38f0e7989a
2021-04-15 11:08:10 +08:00
Taehwan Kim
9d20b97534 remove video_system_heap
Test: Youtube playback, video recording, ExoPlayer playback
Bug: 181380463
Signed-off-by: Taehwan Kim <t_h.kim@samsung.com>
Change-Id: If2aad557365755156e4c088048dc351bc66df281
2021-04-15 11:07:20 +08:00
Chris Lu
86582e6ce0 display: remove dontaudit for hal_memtrack_default
Bug: 181913683
Test: make pts -j60 pts-tradefed run pts -m PtsSELinuxTest -t
com.google.android.selinux.pts.SELinuxTest#scanAvcDeniedLogRightAfterReboot

Change-Id: I72963aed5aff9bcbf2de16b11b16033ca594d7f0
2021-04-15 10:12:01 +08:00
Jasmine Cha
5a8e595a9f audio: switch audio HAL to V7 am: 5b50e7384a
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101/+/13945526

Change-Id: Ie651f42eea7bee0c377a8f74337168a95bf9b445
2021-04-15 01:44:41 +00:00
Vova Sharaienko
a0a8cb2dff Stats: removed obsolete IStats HIDL sepolicies
Bug: 181887265
Test: Build, flash, and logcat for sepolicies messages
Change-Id: I702a8d59fadf04658addd6e3acf3a126a0a4cae7
2021-04-15 01:42:45 +00:00
Jasmine Cha
5b50e7384a audio: switch audio HAL to V7
bug: 180878031
Test: atest VtsHalAudioV6_0TargetTest
      atest VtsHalAudioV7_0TargetTest
      atest VtsHalAudioEffectV6_0TargetTest
      atest VtsHalAudioEffectV7_0TargetTest
      atest VtsHalAudioPolicyV1_0TargetTest
      manual audio test - playback/record/voice call

Signed-off-by: Jasmine Cha <chajasmine@google.com>
Change-Id: I9dbf808307f2de77eb47fbc0eabfa4d03464b36e
2021-04-15 01:02:19 +00:00
Benjamin Schwartz
dde4b6bf1f Allow power stats HAL to read gnss stats
Bug: 181577366
Test: dumpsys android.hardware.power.stats.IPowerStats/default
Change-Id: Iea8c332f9b73358e1a6464d69cbef6af4a603f84
2021-04-14 17:28:02 -07:00
Benjamin Schwartz
a791d93318 Allow power stats HAL read uwb power_stats sysfs node
Bug: 180956351
Test: dumpsys android.hardware.power.stats.IPowerStats/default
Change-Id: Id157c1e10f4d9491ae54dd1babb82e6f282c257c
2021-04-14 15:35:53 -07:00
Quang Luong
82aaf50805 Add default lookup table for wifi coex am: 59291d3c60
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101/+/14172983

Change-Id: I1006f9e9d6a7d343259d145b7d55ceee488299e1
2021-04-14 22:28:12 +00:00
Quang Luong
59291d3c60 Add default lookup table for wifi coex
Bug: 184089520
Test: verify coex table was succesfully read in logs
Change-Id: I65e232307cf9527e3ecdc4b367f8277196025d36
2021-04-14 21:46:03 +00:00
Benjamin Schwartz
b029f448d4 powerstats: Add PD on stats am: 2219a99232
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101/+/14177048

Change-Id: I7d523bad8fa8d46f47ea52bcacf9d957d971794b
2021-04-14 19:31:06 +00:00
Benjamin Schwartz
801b3c3634 powerstats: Correct DVFS operating points am: d9e7656d60
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101/+/14176945

Change-Id: Ibc760814bb69a7cbb2631697e730d47dc34dca77
2021-04-14 19:30:48 +00:00
Benjamin Schwartz
2219a99232 powerstats: Add PD on stats
Bug: 176452458
Test: dumpsys android.hardware.power.stats.IPowerStats/default
Change-Id: I871e93c5e46d0c88bd8a07eec8a38c8d1cf81d9a
2021-04-14 18:57:35 +00:00
Benjamin Schwartz
d9e7656d60 powerstats: Correct DVFS operating points
Bug: 180261952
Test: dumpsys android.hardware.power.stats.IPowerStats/default
Change-Id: I472a74218934ee6f9fae82fe36ddb924bfcd70ee
2021-04-14 18:57:32 +00:00
Aaron Tsai
ab5ab00a89 Fix avc denied for Silent Logging am: 204dc05aa4
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/14182163

Change-Id: I23df127195424ce93b544767f450bd687a3a604c
2021-04-14 12:47:34 +00:00
Aaron Tsai
9c8ec42d54 Fix avc denied for Silent Logging am: 204dc05aa4
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/14182163

Change-Id: I32b6542ade23e244d4758e88d8d2f2faa10bfdcb
2021-04-14 12:42:13 +00:00
Aaron Tsai
204dc05aa4 Fix avc denied for Silent Logging
04-08 23:18:20.684   920   920 I HwBinder:920_1: type=1400 audit(0.0:486): avc: denied { call } for scontext=u:r:sced:s0 tcontext=u:r:vendor_telephony_app:s0:c232,c259,c512,c768 tclass=binder permissive=1
04-08 22:51:36.312  1000  6890  6890 I Thread-2: type=1400 audit(0.0:1390): avc: denied { call } for scontext=u:r:vendor_telephony_app:s0:c232,c259,c512,c768 tcontext=u:r:sced:s0 tclass=binder permissive=1

04-08 23:18:20.684  7099  7099 I auditd  : type=1400 audit(0.0:487): avc: denied { execute } for comm="HwBinder:920_1" name="sh" dev="dm-0" ino=464 scontext=u:r:sced:s0 tcontext=u:object_r:shell_exec:s0 tclass=file permissive=1
04-08 23:18:20.684  7099  7099 I auditd  : type=1400 audit(0.0:488): avc: denied { read open } for comm="HwBinder:920_1" path="/system/bin/sh" dev="overlay" ino=464 scontext=u:r:sced:s0 tcontext=u:object_r:shell_exec:s0 tclass=file permissive=1

04-08 22:51:36.312  1000  8554  8554 I HwBinder:908_1: type=1400 audit(0.0:1391): avc: denied { execute_no_trans } for path="/vendor/bin/sh" dev="overlay" ino=377 scontext=u:r:sced:s0 tcontext=u:object_r:vendor_shell_exec:s0 tclass=file permissive=1
04-08 22:51:36.324  1000   908   908 I HwBinder:908_1: type=1400 audit(0.0:1392): avc: denied { search } for name="slog" dev="dm-7" ino=245 scontext=u:r:sced:s0 tcontext=u:object_r:vendor_slog_file:s0 tclass=dir permissive=1
04-08 22:51:36.324  1000   908   908 I HwBinder:908_1: type=1400 audit(0.0:1393): avc: denied { write } for name="slog" dev="dm-7" ino=245 scontext=u:r:sced:s0 tcontext=u:object_r:vendor_slog_file:s0 tclass=dir permissive=1
04-08 22:51:36.324  1000   908   908 I HwBinder:908_1: type=1400 audit(0.0:1394): avc: denied { add_name } for name="tcplog_20210408225136.pcap" scontext=u:r:sced:s0 tcontext=u:object_r:vendor_slog_file:s0 tclass=dir permissive=1
04-08 22:52:24.720  1000   908   908 I HwBinder:908_1: type=1400 audit(0.0:1427): avc: denied { create } for name="tcplog_20210408225224.pcap" scontext=u:r:sced:s0 tcontext=u:object_r:vendor_slog_file:s0 tclass=file permissive=1

04-08 23:18:23.160  7099  7099 I auditd  : type=1400 audit(0.0:505): avc: denied { getopt } for comm="tcpdump" scontext=u:r:sced:s0 tcontext=u:r:sced:s0 tclass=packet_socket permissive=1
04-08 23:18:23.160  7099  7099 I tcpdump : type=1400 audit(0.0:505): avc: denied { getopt } for scontext=u:r:sced:s0 tcontext=u:r:sced:s0 tclass=packet_socket permissive=1
04-08 23:18:23.160  7099  7099 I auditd  : type=1400 audit(0.0:506): avc: denied { setopt } for comm="tcpdump" scontext=u:r:sced:s0 tcontext=u:r:sced:s0 tclass=packet_socket permissive=1
04-08 23:18:23.160  7099  7099 I tcpdump : type=1400 audit(0.0:506): avc: denied { setopt } for scontext=u:r:sced:s0 tcontext=u:r:sced:s0 tclass=packet_socket permissive=1

04-08 23:58:53.664  8514  8514 I auditd  : type=1400 audit(0.0:500): avc: denied { getattr } for comm="sh" path="/system/bin/tcpdump" dev="overlay" ino=502 scontext=u:r:sced:s0 tcontext=u:object_r:tcpdump_exec:s0 tclass=file permissive=1
04-08 23:58:53.664  8514  8514 I auditd  : type=1400 audit(0.0:501): avc: denied { execute } for comm="sh" name="tcpdump" dev="dm-0" ino=502 scontext=u:r:sced:s0 tcontext=u:object_r:tcpdump_exec:s0 tclass=file permissive=1
04-08 23:58:53.664  8514  8514 I auditd  : type=1400 audit(0.0:502): avc: denied { read open } for comm="sh" path="/system/bin/tcpdump" dev="overlay" ino=502 scontext=u:r:sced:s0 tcontext=u:object_r:tcpdump_exec:s0 tclass=file permissive=1
04-08 23:58:53.668  8514  8514 I auditd  : type=1400 audit(0.0:503): avc: denied { execute_no_trans } for comm="sh" path="/system/bin/tcpdump" dev="overlay" ino=502 scontext=u:r:sced:s0 tcontext=u:object_r:tcpdump_exec:s0 tclass=file permissive=1
04-08 23:58:53.668  8514  8514 I auditd  : type=1400 audit(0.0:504): avc: denied { map } for comm="tcpdump" path="/system/bin/tcpdump" dev="overlay" ino=502 scontext=u:r:sced:s0 tcontext=u:object_r:tcpdump_exec:s0 tclass=file permissive=1

04-08 23:58:53.680  8514  8514 I auditd  : type=1400 audit(0.0:505): avc: denied { create } for comm="tcpdump" scontext=u:r:sced:s0 tcontext=u:r:sced:s0 tclass=packet_socket permissive=1
04-08 23:58:53.680  8514  8514 I auditd  : type=1400 audit(0.0:506): avc: denied { net_raw } for comm="tcpdump" capability=13 scontext=u:r:sced:s0 tcontext=u:r:sced:s0 tclass=capability permissive=1
04-08 23:58:53.680  8514  8514 I auditd  : type=1400 audit(0.0:507): avc: denied { ioctl } for comm="tcpdump" path="socket:[96140]" dev="sockfs" ino=96140 ioctlcmd=0x8933 scontext=u:r:sced:s0 tcontext=u:r:sced:s0 tclass=packet_socket permissive=1

04-13 19:19:38.493  1000   403   403 I auditd  : avc:  denied  { find } for interface=vendor.samsung_slsi.telephony.hardware.oemservice::IOemService sid=u:r:sced:s0 pid=909 scontext=u:r:sced:s0 tcontext=u:object_r:hal_vendor_oem_hwservice:s0 tclass=hwservice_manager permissive=0
04-13 21:40:13.054   404   404 I auditd  : avc:  denied  { add } for interface=vendor.samsung_slsi.telephony.hardware.oemservice::IOemService sid=u:r:sced:s0 pid=911 scontext=u:r:sced:s0 tcontext=u:object_r:hal_vendor_oem_hwservice:s0 tclass=hwservice_manager permissive=1
04-13 21:40:13.055   404   404 I auditd  : avc:  denied  { add } for interface=android.hidl.base::IBase sid=u:r:sced:s0 pid=911 scontext=u:r:sced:s0 tcontext=u:object_r:hidl_base_hwservice:s0 tclass=hwservice_manager permissive=1


Bug: 184921478
Test: manual test
Change-Id: I39eb403272a8a4fba0728c9f8eab5ea23096a540
2021-04-14 18:18:55 +08:00
Jenny Ho
37c4a04174 dumpstate: update dump eeprom path am: 3d46be281d
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101/+/14160953

Change-Id: I558f71cf5083c3a3d1c646107c08722aeb02d65e
2021-04-14 08:36:48 +00:00