Commit graph

2387 commits

Author SHA1 Message Date
Roshan Pius
62f6dbd236 [automerger skipped] gs101-sepolicy: Rename hal_uwb -> hal_uwb_vendor am: a3f040d2ac -s ours am: 545771e074 -s ours
am skip reason: Merged-In Ief48eacde68b062b2199b20c0c1bb3af23795240 with SHA-1 04fbca104c is already in history

Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15678068

Change-Id: I5776eafb0a6ca87ba12432bfd8b24405b699311a
2021-08-26 04:25:54 +00:00
Roshan Pius
545771e074 [automerger skipped] gs101-sepolicy: Rename hal_uwb -> hal_uwb_vendor am: a3f040d2ac -s ours
am skip reason: Merged-In Ief48eacde68b062b2199b20c0c1bb3af23795240 with SHA-1 04fbca104c is already in history

Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15678068

Change-Id: I1ff7de7eba82ec1d804aa4d2e481303a6ed63252
2021-08-26 04:07:26 +00:00
Roshan Pius
dd586eb7b4 [automerger skipped] gs101-sepolicy: Rename hal_uwb -> hal_uwb_vendor am: 04fbca104c -s ours am: 4eeb587d95 -s ours am: 063cbb1b8f -s ours
am skip reason: skipped by user rpius

Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15675687

Change-Id: I1f9c3293fa679d604f521115f4308aea6072ef4b
2021-08-26 01:36:02 +00:00
Roshan Pius
063cbb1b8f [automerger skipped] gs101-sepolicy: Rename hal_uwb -> hal_uwb_vendor am: 04fbca104c -s ours am: 4eeb587d95 -s ours
am skip reason: skipped by user rpius

Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15675687

Change-Id: Ib6dafd7313c358327c24aa15196cd53d0d3c9840
2021-08-26 01:17:34 +00:00
Roshan Pius
a3f040d2ac gs101-sepolicy: Rename hal_uwb -> hal_uwb_vendor
Since we are now creating an AOSP HAL for uwb. Rename qorvo's internal
HAL to hal_uwb_vendor to avoid conflicts with the AOSP HAL sepolicy
rules.

Bug: 195308730
Test: Compiles
Change-Id: Ief48eacde68b062b2199b20c0c1bb3af23795240
Merged-In: Ief48eacde68b062b2199b20c0c1bb3af23795240
2021-08-26 01:07:43 +00:00
Roshan Pius
4eeb587d95 [automerger skipped] gs101-sepolicy: Rename hal_uwb -> hal_uwb_vendor am: 04fbca104c -s ours
am skip reason: skipped by user rpius

Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15675687

Change-Id: I2d51df14c755847d1a270bdb98e9b702e22f8b7f
2021-08-26 01:01:24 +00:00
Victor Liu
16092c7774 [automerger skipped] uwb: permissions for factory uwb calibration file am: 29aa981623 am: 7a06a7a434 -s ours am: 441d9430ab -s ours
am skip reason: Merged-In I3e5282477fd391b483e03242ce0b806bd447dc54 with SHA-1 29aa981623 is already in history

Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15616315

Change-Id: I8e7f08993339f6cd1e6d39e7d8eaf1008827f4f1
2021-08-25 23:59:12 +00:00
Victor Liu
684c5ff75b [automerger skipped] uwb: permissions for factory uwb calibration file am: 29aa981623 am: 5dfabe8acf am: e877511429 -s ours
am skip reason: Merged-In I3e5282477fd391b483e03242ce0b806bd447dc54 with SHA-1 8383d9e13f is already in history

Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15616315

Change-Id: Ie2eef5d497c17c4538febae8fb96e4d69d1caf10
2021-08-25 23:59:00 +00:00
Victor Liu
441d9430ab [automerger skipped] uwb: permissions for factory uwb calibration file am: 29aa981623 am: 7a06a7a434 -s ours
am skip reason: Merged-In I3e5282477fd391b483e03242ce0b806bd447dc54 with SHA-1 29aa981623 is already in history

Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15616315

Change-Id: I24b2da33bda30d057dab6812ec886615a3febb45
2021-08-25 23:42:11 +00:00
Victor Liu
e877511429 uwb: permissions for factory uwb calibration file am: 29aa981623 am: 5dfabe8acf
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15616315

Change-Id: I35c0484a84695969e5f1f3e7cf2e8c7c06b4df3e
2021-08-25 23:41:44 +00:00
Victor Liu
7a06a7a434 uwb: permissions for factory uwb calibration file am: 29aa981623
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15616315

Change-Id: I9755128c2a7a1039cb3b1c5a2e3913a0965540d9
2021-08-25 23:29:50 +00:00
Victor Liu
5dfabe8acf uwb: permissions for factory uwb calibration file am: 29aa981623
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15616315

Change-Id: Ifa053b14b8fe06af7d076b103657ec7232aa8510
2021-08-25 23:29:46 +00:00
Victor Liu
29aa981623 uwb: permissions for factory uwb calibration file
add permission to:
copy factory uwb calib files from persist to /data/vendor/uwb
convert copied file to proper format for uwb stack to consume

Bug: 195659525
Signed-off-by: Victor Liu <victorliu@google.com>
Change-Id: I3e5282477fd391b483e03242ce0b806bd447dc54
Merged-In: I3e5282477fd391b483e03242ce0b806bd447dc54
2021-08-25 19:14:10 +00:00
Victor Liu
8383d9e13f uwb: permissions for factory uwb calibration file
add permission to:
copy factory uwb calib files from persist to /data/vendor/uwb
convert copied file to proper format for uwb stack to consume

Bug: 195659525
Signed-off-by: Victor Liu <victorliu@google.com>
Change-Id: I3e5282477fd391b483e03242ce0b806bd447dc54
2021-08-25 19:12:44 +00:00
Roshan Pius
04fbca104c gs101-sepolicy: Rename hal_uwb -> hal_uwb_vendor
Since we are now creating an AOSP HAL for uwb. Rename qorvo's internal
HAL to hal_uwb_vendor to avoid conflicts with the AOSP HAL sepolicy
rules.

Bug: 195308730
Test: Compiles
Change-Id: Ief48eacde68b062b2199b20c0c1bb3af23795240
Merged-In: Ief48eacde68b062b2199b20c0c1bb3af23795240
2021-08-25 17:32:53 +00:00
Roshan Pius
515c17c4e3 gs101-sepolicy: Rename hal_uwb -> hal_uwb_vendor
Since we are now creating an AOSP HAL for uwb. Rename qorvo's internal
HAL to hal_uwb_vendor to avoid conflicts with the AOSP HAL sepolicy
rules.

Bug: 195308730
Test: Compiles
Change-Id: Ief48eacde68b062b2199b20c0c1bb3af23795240
2021-08-23 09:03:06 -07:00
TreeHugger Robot
c507d41193 Merge "Allow boot color propagation" into sc-qpr1-dev am: 9c97417d3a am: c9690b1256 am: f3993d4555
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15600825

Change-Id: I7400f05e41c5bbb8bdf080879f41a429b0c2ba07
2021-08-21 17:14:18 +00:00
TreeHugger Robot
a6f6fe4d93 Merge "Allow boot color propagation" into sc-qpr1-dev am: 9c97417d3a am: c3521edd8c am: 4dce16cfef
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15600825

Change-Id: I15e30c3a32ca4fb4777fae9d3bfb4d92c5c45205
2021-08-21 17:10:24 +00:00
TreeHugger Robot
f3993d4555 Merge "Allow boot color propagation" into sc-qpr1-dev am: 9c97417d3a am: c9690b1256
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15600825

Change-Id: I6d8905a45f5195294ca67d8cf21917779c6c3a0c
2021-08-21 17:10:21 +00:00
TreeHugger Robot
4dce16cfef Merge "Allow boot color propagation" into sc-qpr1-dev am: 9c97417d3a am: c3521edd8c
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15600825

Change-Id: Ie7fde3e797a018b74849b74543a1a0564d9141fd
2021-08-19 23:24:40 +00:00
TreeHugger Robot
c3521edd8c Merge "Allow boot color propagation" into sc-qpr1-dev am: 9c97417d3a
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15600825

Change-Id: Ibef6a94ac176f32b8bb0a87d3eb8283573bbcc74
2021-08-19 23:12:37 +00:00
TreeHugger Robot
c9690b1256 Merge "Allow boot color propagation" into sc-qpr1-dev am: 9c97417d3a
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15600825

Change-Id: I7c3f9be67d2e2ae13c034e4909c9ec589e38ccf2
2021-08-19 23:12:30 +00:00
TreeHugger Robot
9c97417d3a Merge "Allow boot color propagation" into sc-qpr1-dev 2021-08-19 22:52:31 +00:00
David Chen
9778b7a237 [automerger skipped] resolve merge conflicts of c0922582bc to sc-v2-dev am: 462d4b1bcd -s ours am: 381a1043e1 -s ours
am skip reason: Merged-In Ib95debbc9ce10919c5f935e8f70b340bb293b54a with SHA-1 c0922582bc is already in history

Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15618916

Change-Id: I1d76d0032294bdb093426eab11720d9d8e788832
2021-08-19 08:52:39 +00:00
David Chen
381a1043e1 [automerger skipped] resolve merge conflicts of c0922582bc to sc-v2-dev am: 462d4b1bcd -s ours
am skip reason: Merged-In Ib95debbc9ce10919c5f935e8f70b340bb293b54a with SHA-1 c0922582bc is already in history

Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15618916

Change-Id: I4cf911eb3be87f95df8310888a4b4d211fc576fb
2021-08-19 08:37:09 +00:00
David Chen
d4cef608f5 [automerger skipped] resolve merge conflicts of 945de94222 to sc-v2-dev-plus-aosp am: 28cd716faa -s ours
am skip reason: Merged-In Ib95debbc9ce10919c5f935e8f70b340bb293b54a with SHA-1 6e7338095b is already in history

Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15618917

Change-Id: I5e2af865dcdd230b501f6256af12396eb0a877e5
2021-08-19 04:14:39 +00:00
David Chen
462d4b1bcd resolve merge conflicts of c0922582bc to sc-v2-dev
Bug: 197164878

Change-Id: Ibc7ea7ffe9c30912c8e12d081a6b110f8e73f29f
Merged-In: Ib95debbc9ce10919c5f935e8f70b340bb293b54a
2021-08-19 02:25:56 +00:00
David Chen
28cd716faa resolve merge conflicts of 945de94222 to sc-v2-dev-plus-aosp
Bug: 197166084

Change-Id: I4b8b2d99db133be4c96853f072e3b10dbac39b92
Merged-In: Ib95debbc9ce10919c5f935e8f70b340bb293b54a
2021-08-19 02:25:12 +00:00
davidycchen
945de94222 Allow twoshay to access fwk_stats_service and system_server am: c0922582bc
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15605516

Change-Id: I8a500539a2738d27fa47d2d3f45cfe5e68bfe099
2021-08-19 01:30:20 +00:00
Horng Chuang
b43621dd40 Merge "sepolicy: gs101: Grant permission for more camera device nodes" 2021-08-18 06:16:25 +00:00
Rick Yiu
076106a43b Merge "gs101-sepolicy: Remove private/mediaprovider_app.te" into sc-v2-dev am: 26fec151ec am: 7fcca345b0
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15595122

Change-Id: Ib0b444122bc33f26149f5a655a3ed10496b7529e
2021-08-18 04:23:21 +00:00
Rick Yiu
7fcca345b0 Merge "gs101-sepolicy: Remove private/mediaprovider_app.te" into sc-v2-dev am: 26fec151ec
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15595122

Change-Id: Ic7d8107ef2e16a57e00de5080a86cdffa50c6791
2021-08-18 04:06:09 +00:00
Rick Yiu
26fec151ec Merge "gs101-sepolicy: Remove private/mediaprovider_app.te" into sc-v2-dev 2021-08-18 03:46:01 +00:00
davidycchen
c0922582bc Allow twoshay to access fwk_stats_service and system_server
avc:  denied  { find } for pid=813 uid=0
name=android.frameworks.stats.IStats/default scontext=u:r:twoshay:s0
tcontext=u:object_r:fwk_stats_service:s0 tclass=service_manager

avc: denied { call } for scontext=u:r:twoshay:s0
tcontext=u:r:system_server:s0 tclass=binder

Bug: 179334953
Test: Make selinux_policy and push related files to the device.

Signed-off-by: davidycchen <davidycchen@google.com>
Change-Id: Ib95debbc9ce10919c5f935e8f70b340bb293b54a
Merged-In: Ib95debbc9ce10919c5f935e8f70b340bb293b54a
2021-08-18 09:47:01 +08:00
Bart Van Assche
0b8782525b Add the 'bdev_type' attribute to all block device types am: 37b5741301 am: 239bcceb78 am: 7513cd7ad6 am: 6828588c74
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15517922

Change-Id: I6b1d77a15fd0a9839e6aac3313fe2ed2148f8693
2021-08-18 01:36:09 +00:00
Bart Van Assche
23e753a813 Add the 'bdev_type' attribute to all block device types am: 37b5741301 am: 79b41e3c3a am: 742ff4f98c am: 65b8e1e433
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15517922

Change-Id: I370eedd4c90af9043c9d96b73c16e1aaf13bb835
2021-08-18 01:35:01 +00:00
Bart Van Assche
eeccb9bc7a Add the 'bdev_type' attribute to all block device types am: 37b5741301 am: 239bcceb78 am: ea25044059 am: 07751567ad
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15517922

Change-Id: Ifac56b5f8a8e14ca55419e3009771644c3041df2
2021-08-18 01:32:55 +00:00
Bart Van Assche
6828588c74 Add the 'bdev_type' attribute to all block device types am: 37b5741301 am: 239bcceb78 am: 7513cd7ad6
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15517922

Change-Id: I5c32e5d3fdb511b5103dc2e0a24f837e714943b7
2021-08-18 01:26:07 +00:00
Bart Van Assche
65b8e1e433 Add the 'bdev_type' attribute to all block device types am: 37b5741301 am: 79b41e3c3a am: 742ff4f98c
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15517922

Change-Id: Ie24dd9a6de1a644b15eed4da713089cc6bcbefe6
2021-08-18 01:20:26 +00:00
Bart Van Assche
07751567ad Add the 'bdev_type' attribute to all block device types am: 37b5741301 am: 239bcceb78 am: ea25044059
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15517922

Change-Id: I5d46eab501e1ce290570a69dde5450813eff0bf0
2021-08-18 01:20:15 +00:00
Bart Van Assche
742ff4f98c Add the 'bdev_type' attribute to all block device types am: 37b5741301 am: 79b41e3c3a
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15517922

Change-Id: I693db84157721b8ff20ae7bd8da213469352cc75
2021-08-18 01:01:59 +00:00
Bart Van Assche
7513cd7ad6 Add the 'bdev_type' attribute to all block device types am: 37b5741301 am: 239bcceb78
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15517922

Change-Id: Iedf50eb9fc1c205eb584c4c53ad7de45c06b695d
2021-08-18 00:56:43 +00:00
Bart Van Assche
ea25044059 Add the 'bdev_type' attribute to all block device types am: 37b5741301 am: 239bcceb78
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15517922

Change-Id: I0ca50d490ad5aa49bcc2f1c7db52f5b81a44dcd2
2021-08-18 00:56:43 +00:00
Bart Van Assche
239bcceb78 Add the 'bdev_type' attribute to all block device types am: 37b5741301
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15517922

Change-Id: I19d709e960fe8ccf066bdbd20dc6817ee20e55d0
2021-08-18 00:34:10 +00:00
Bart Van Assche
79b41e3c3a Add the 'bdev_type' attribute to all block device types am: 37b5741301
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15517922

Change-Id: I52ac9161ae22eafecd60a8317370ddc3b243263d
2021-08-18 00:31:25 +00:00
Bart Van Assche
37b5741301 Add the 'bdev_type' attribute to all block device types
The following patch introduces code that iterates over all block
devices:
https://android-review.googlesource.com/c/platform/system/core/+/1783847/9

The following patch grants 'init' and 'apexd' permission to iterate over
all block devices:
https://android-review.googlesource.com/c/platform/system/sepolicy/+/1783947

The above SELinux policy change requires to add the 'bdev_type'
attribute to all block devices. Hence this patch.

Bug: 194450129
Bug: 196982345
Test: Built Android images that include this change and verified that neither init nor apexd triggers any SELinux access denied errors.
Change-Id: I6ce1127f199c5b33812f15fe280d86594d7d7ebf
Signed-off-by: Bart Van Assche <bvanassche@google.com>
2021-08-17 15:23:23 -07:00
Lucas Dupin
6e887cf3a0 Allow boot color propagation
Allows SystemUI to write the boot color sysprop

Test: manual
Bug: 190093578
Change-Id: I844a4dae87fe09a09ff3368c540ffab5f745d455
(cherry picked from commit 8a586e6786)
2021-08-17 21:06:23 +00:00
Rick Yiu
6224fa9354 gs101-sepolicy: Remove private/mediaprovider_app.te
Moved to system/sepolicy to solve GSI avc denials.

Bug: 196326750
Test: build pass
Change-Id: I4bdcc1d49bf9550297687534074fd3fc526d3acc
2021-08-17 21:09:20 +08:00
TreeHugger Robot
deba8c8ff8 Merge "sepolicy: gs101: allows dock power supply permission" 2021-08-17 12:10:07 +00:00
TreeHugger Robot
e610648768 Merge "Allow boot color propagation" 2021-08-17 06:24:21 +00:00