03-25 15:28:05.656 I auditd : type=1400 audit(0.0:48): avc: denied { net_raw } for comm="wfc-pkt-router" capability=13 scontext=u:r:pktrouter:s0 tcontext=u:r:pktrouter:s0 tclass=capability permissive=0 Bug: 183664765 Test: Manual Change-Id: I378b2c0ed8af9e4ba1accfdcc5380a1f9f066b81
13 lines
481 B
Text
13 lines
481 B
Text
type pktrouter, domain;
|
|
type pktrouter_exec, vendor_file_type, exec_type, file_type;
|
|
init_daemon_domain(pktrouter)
|
|
net_domain(pktrouter)
|
|
|
|
domain_auto_trans(pktrouter, netutils_wrapper_exec, netutils_wrapper);
|
|
|
|
allow pktrouter pktrouter_device:chr_file rw_file_perms;
|
|
allow pktrouter self:netlink_route_socket nlmsg_write;
|
|
allow pktrouter self:packet_socket { bind create read write getattr shutdown};
|
|
allow pktrouter self:capability net_raw;
|
|
|
|
get_prop(pktrouter, vendor_ims_prop);
|