Jeffrey Carlyle
14fcd5ffaf
allow recovery and fastboot to access secure elment
...
This is to enable clearing of secure element during a master reset.
Bug: 182508814
Test: master reset on device with keys; verified no keys after reset
Signed-off-by: Jeffrey Carlyle <jcarlyle@google.com>
Change-Id: I9bb569e09f8cd6f5640757bd0d10a14ef32946ff
2021-06-30 15:19:22 +09:00
Gazi Yamin Iqbal
737622596d
Merge "gs101-sepolicy: allow rlsservice to read display status files" into sc-dev am: 2e1cafdfd8
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15100489
Change-Id: I537e8c41624e8d8d85590d550691f6cda7266853
2021-06-30 05:58:42 +00:00
Gazi Yamin Iqbal
2e1cafdfd8
Merge "gs101-sepolicy: allow rlsservice to read display status files" into sc-dev
2021-06-30 05:41:19 +00:00
Ted Lin
cb3ca1e87b
Remove dontaudit form tracking_denials for maxfg and regmap
...
Bug:190337297
Test: Check the bugreport
Change-Id: I0887e6256b4f158bd525ed66475cd1ef5672c9df
Signed-off-by: Ted Lin <tedlin@google.com>
2021-06-30 11:11:22 +08:00
Adam Shih
10da89a15e
Merge "Avoid VTS testDataTypeViolators failure" into sc-dev am: 3ded724256
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15126901
Change-Id: I4825d3dd3e5cf204f73fc9139a355a04e33ef6ae
2021-06-30 02:06:56 +00:00
Adam Shih
3ded724256
Merge "Avoid VTS testDataTypeViolators failure" into sc-dev
2021-06-30 01:45:29 +00:00
George Lee
4aa936d63b
pixelstats: add bcl directory permission
...
Bug: 186806028
Test: Local test
$>cmd stats print-logs
$>logcat | grep <atom id>
Signed-off-by: George Lee <geolee@google.com>
Change-Id: I7288a9ab44e2387d37c5442297cf80f5b5428c8f
2021-06-29 16:08:38 -07:00
Kevin Han
fcd18a6e4d
Merge "Revert "allow recovery and fastboot to access secure elment"" into sc-dev am: 1d54c8dd21
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15145159
Change-Id: Ie5ffd99597f2b00758126fabf8032c94a8208a16
2021-06-29 19:51:41 +00:00
Kevin Han
1d54c8dd21
Merge "Revert "allow recovery and fastboot to access secure elment"" into sc-dev
2021-06-29 19:33:01 +00:00
Kevin Han
fd47b11162
Revert "allow recovery and fastboot to access secure elment"
...
Revert "add gs101-specific recovery library"
Revert "recovery: enable support for device-specific WipeSe impl..."
Revert "clear secure element of Digital Car Keys during factory ..."
Revert submission 14983788-clear_keys
Reason for revert: b/192373955
Reverted Changes:
Ia8fc29e6c:add gs101-specific recovery library
Icc1eabfd4:clear secure element of Digital Car Keys during fa...
I943d97b26:recovery: enable support for device-specific WipeS...
I15c7fbd7f:allow recovery and fastboot to access secure elmen...
Change-Id: Ic576b40641171298ad840bedbd4a9f7b67052d95
2021-06-29 19:19:24 +00:00
TreeHugger Robot
7432c08ac9
Merge "allow recovery and fastboot to access secure elment" into sc-dev am: be3d2bf325
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/14681841
Change-Id: I642763bd029fdaa6fe11b440af187a37feeb7966
2021-06-29 18:03:40 +00:00
TreeHugger Robot
be3d2bf325
Merge "allow recovery and fastboot to access secure elment" into sc-dev
2021-06-29 17:50:35 +00:00
TreeHugger Robot
3de1991b67
Merge "Fix denial when flashing vendor_boot in fastbootd." into sc-dev am: 432ed9b527
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15135682
Change-Id: I84c80310cbd1897fe7ef1bac5d9b6c8bc024412e
2021-06-29 17:24:18 +00:00
TreeHugger Robot
432ed9b527
Merge "Fix denial when flashing vendor_boot in fastbootd." into sc-dev
2021-06-29 17:04:07 +00:00
David Anderson
2354e3a924
Fix denial when flashing vendor_boot in fastbootd.
...
This mirrors the same sepolicy line in previous Pixel devices.
Bug: 189493387
Test: fastboot flash vendor_boot on r4
Change-Id: Ie15c8e6e5c01b249e1e5e244666c461253279f0b
2021-06-28 21:06:05 -07:00
Neo Yu
145c181a70
Merge "Fix avc denied for getprop "vendor.radio.call_end_reason"" into sc-dev am: 9c27ce91c8
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15126897
Change-Id: Icefd3f8fb6cd01b2596e1ec41720bdbdd39b8a5c
2021-06-29 03:22:07 +00:00
Neo Yu
9c27ce91c8
Merge "Fix avc denied for getprop "vendor.radio.call_end_reason"" into sc-dev
2021-06-29 03:05:02 +00:00
TreeHugger Robot
7c3b9b3401
Merge "Sepolicy: Remove permission for fuel gauge" into sc-dev am: 15f7a61603
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/14782008
Change-Id: Ieeaa691c55bedd880eda6ffeb96188f0deb3d01d
2021-06-29 02:01:24 +00:00
TreeHugger Robot
15f7a61603
Merge "Sepolicy: Remove permission for fuel gauge" into sc-dev
2021-06-29 01:48:34 +00:00
TreeHugger Robot
03488b260f
Merge "Sepolicy: Pixel stats wireless charger sepolicy" into sc-dev am: 22f27cb215
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/14456728
Change-Id: If3f1fa43325948305419f2b1e5995855bde42a4c
2021-06-29 01:31:17 +00:00
neoyu
93944a8b1c
Fix avc denied for getprop "vendor.radio.call_end_reason"
...
06-10 11:13:02.867 10224 2377 2377 W libc : Access denied finding property "vendor.radio.call_end_reason"
Bug: 191204793
Test: error is gone with this fix
Change-Id: I50c1d21ba4e2343aa2cee0c533b8c3dbe535e4b5
2021-06-29 01:18:12 +00:00
TreeHugger Robot
22f27cb215
Merge "Sepolicy: Pixel stats wireless charger sepolicy" into sc-dev
2021-06-29 01:16:35 +00:00
Adam Shih
f9501fc87c
Avoid VTS testDataTypeViolators failure
...
Bug: 192209720
Test: run -m CtsSecurityHostTestCases -t android.security.cts.SELinuxHostTest
Change-Id: I9043c5adfb544179bceb0f6e5cf73c2b2ddd3d02
2021-06-29 07:58:57 +08:00
David Lin
4b6bc8cb32
ssr_detector_app: Add additional vendor dir and crgroup allow for debug
...
Bug: 192126013
Signed-off-by: David Lin <dtwlin@google.com>
Change-Id: Idadf81cf92099804f300f87fb1bedf9bed7decbd
2021-06-28 21:52:51 +00:00
TreeHugger Robot
4a6403f455
Merge "Hardwareinfo: battery info porting" into sc-dev am: a63fbd68d4
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/14608134
Change-Id: I90ebe00451a871473545576b52fdcbbfff008793
2021-06-28 16:34:14 +00:00
TreeHugger Robot
a63fbd68d4
Merge "Hardwareinfo: battery info porting" into sc-dev
2021-06-28 16:20:12 +00:00
Gazi Yamin Iqbal
4ea317bb6a
gs101-sepolicy: allow rlsservice to read display status files
...
major changes:
1. This change is to allow rlsservice to read the status of
display status file. Similar method was employed in previous
pixels.
Bug: 191122203
Test: p21 camera test checklist
Change-Id: I09483881294fd6dde46d4d0b7283311a2d20c404
2021-06-28 22:15:08 +08:00
TreeHugger Robot
3863954bf4
Merge "gs101-sepolicy: add oemrilservice_app.te" into sc-dev am: 407d0cf58d
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15072301
Change-Id: Icf8b698caf10af881a2a90a745f3e77d80666e94
2021-06-27 01:57:50 +00:00
TreeHugger Robot
407d0cf58d
Merge "gs101-sepolicy: add oemrilservice_app.te" into sc-dev
2021-06-27 01:47:21 +00:00
Jeffrey Carlyle
9ac870aa22
allow recovery and fastboot to access secure elment
...
This is to enable clearing of secure element during a master reset.
Bug: 182508814
Test: master reset on device with keys; verified no keys after reset
Signed-off-by: Jeffrey Carlyle <jcarlyle@google.com>
Change-Id: I15c7fbd7f2c4fb34dcad0ae4f5cee3238f526fa5
2021-06-25 17:54:29 -07:00
sukiliu
8a85dbd92d
Update avc error on ROM 7492139 am: 7ea816284d
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15100479
Change-Id: I498cd2538fd38e9d1e8976e598b548bc20014647
2021-06-25 08:13:15 +00:00
sukiliu
7ea816284d
Update avc error on ROM 7492139
...
avc: denied { call } for comm="servicemanager" scontext=u:r:servicemanager:s0 tcontext=u:r:hal_fingerprint_default:s0 tclass=binder permissive=0
Bug: 192040144
Test: PtsSELinuxTestCases
Change-Id: I2de11d2706222a88c4234d99399b7b2437f36e31
2021-06-25 14:40:17 +08:00
sukiliu
02998c1154
Update avc error on ROM 7490489 am: e31c8840de
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15100471
Change-Id: Ibecea61f0430bdf847d3b12b641114372e0f943a
2021-06-25 03:12:10 +00:00
sukiliu
e31c8840de
Update avc error on ROM 7490489
...
avc: denied { call } for scontext=u:r:dumpstate:s0 tcontext=u:r:hal_uwb_default:s0 tclass=binder permissive=0
avc: denied { call } for comm="dumpstate" scontext=u:r:dumpstate:s0 tcontext=u:r:hal_uwb_default:s0 tclass=binder permissive=0
Bug: 192026913
Test: PtsSELinuxTestCases
Change-Id: Ieca08e87db1b46f3b7fc7de1492e45d4a5bec868
2021-06-25 09:42:51 +08:00
Ilya Matyukhin
09792c098f
Merge "raviole: transition SystemUI to use HWC for LHBM" into sc-dev am: f9828a9944
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15085906
Change-Id: If83496c47ac3e6450756a5dfc2342884a17e378d
2021-06-25 01:27:58 +00:00
Adam Shih
c418ff2db2
Merge "modularize dmd" into sc-dev am: 99bfde4f38
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15072291
Change-Id: Idcd79ae7e96c304194279145cff7af20877cc30a
2021-06-25 01:27:41 +00:00
Ilya Matyukhin
f9828a9944
Merge "raviole: transition SystemUI to use HWC for LHBM" into sc-dev
2021-06-25 01:12:52 +00:00
Adam Shih
99bfde4f38
Merge "modularize dmd" into sc-dev
2021-06-25 01:12:50 +00:00
TreeHugger Robot
1edfd8cfe6
Merge "vendor_init/dumpstate: Grant to access logger prop" into sc-dev am: 655f5cfd8f
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15072290
Change-Id: Icea3ba9901b7a05239a34a64852e0196c31003b8
2021-06-24 10:20:51 +00:00
TreeHugger Robot
655f5cfd8f
Merge "vendor_init/dumpstate: Grant to access logger prop" into sc-dev
2021-06-24 10:02:11 +00:00
Adam Shih
1f58e76864
Merge "modularize pktrouter" into sc-dev am: 9b0b96b907
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15048206
Change-Id: Ibd259d8b20c59e5e950125fbbae3bb14853d4348
2021-06-24 07:41:01 +00:00
Adam Shih
9b0b96b907
Merge "modularize pktrouter" into sc-dev
2021-06-24 07:24:45 +00:00
Ilya Matyukhin
2460cdcc9f
raviole: transition SystemUI to use HWC for LHBM
...
This change removes direct access to the LHBM sysfs node from SystemUI,
but allows SystemUI to make binder calls to the hardware composer (HWC),
which can be used to enable or disable LHBM.
Bug: 191132545
Bug: 190563896
Bug: 184768835
Test: no avc denials
Change-Id: I5417377ff096e869ad772e4fd2fb23f8c1fd4f1e
2021-06-23 23:38:27 -07:00
Adam Shih
8b326703e1
modularize dmd
...
Bug: 190331463
Test: build ROM and make sure dmd is launched
Change-Id: If1e51b6bc100e870a15a40f5e0d93a75fe68bac3
2021-06-24 14:17:29 +08:00
Alex Hong
485004935f
Merge "Move the type definition of properties from product to vendor" into sc-dev am: d912300853
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15080406
Change-Id: I08cf166cc9658f3bf72884ec1a492a9e7afdcd09
2021-06-24 02:19:02 +00:00
Minchan Kim
d8c003c9e1
Merge "sepolicy: gs101: allow dump cma statistics" into sc-dev am: 650cf48406
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/15081303
Change-Id: I8dd50fa4c57b82b6e887d5bd4df8f9035bb68bd6
2021-06-24 02:18:49 +00:00
Alex Hong
d912300853
Merge "Move the type definition of properties from product to vendor" into sc-dev
2021-06-24 02:15:36 +00:00
Alex Hong
e44e432672
Move the type definition of properties from product to vendor
...
These properties cannot be resolved after product sepolicy is replaced.
vendor_persist_config_default_prop
vendor_rild_prop
Test: The device can boot to home after replacing with GSI
Bug: 191236468
Change-Id: Ib797601a44306987e5a85897c7b6cd7827ad91b2
2021-06-24 02:01:20 +00:00
Minchan Kim
650cf48406
Merge "sepolicy: gs101: allow dump cma statistics" into sc-dev
2021-06-24 01:45:11 +00:00
Thierry Strudel
c45b4c7c51
Merge "Add support for non-su hal_uwb" into sc-dev am: e99c749cbd
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs101-sepolicy/+/14928438
Change-Id: Ia0ff6c0dceb663346fd48b6970e5a6035437eff0
2021-06-24 00:56:12 +00:00