diff --git a/tracking_denials/hal_power_stats_default.te b/tracking_denials/hal_power_stats_default.te index 3929f8d8..c5e490dc 100644 --- a/tracking_denials/hal_power_stats_default.te +++ b/tracking_denials/hal_power_stats_default.te @@ -11,3 +11,10 @@ dontaudit hal_power_stats_default sysfs_edgetpu:file { read }; dontaudit hal_power_stats_default sysfs_iio_devices:dir { read open }; dontaudit hal_power_stats_default sysfs_iio_devices:dir { read }; dontaudit hal_power_stats_default sysfs_iio_devices:dir { search }; +# b/207571335 +dontaudit hal_power_stats_default sysfs_acpm_stats:dir { search }; +dontaudit hal_power_stats_default sysfs_acpm_stats:file { read }; +dontaudit hal_power_stats_default sysfs_aoc:dir { search }; +dontaudit hal_power_stats_default sysfs_aoc:file { getattr }; +dontaudit hal_power_stats_default sysfs_aoc:file { open }; +dontaudit hal_power_stats_default sysfs_aoc:file { read }; diff --git a/tracking_denials/logger_app.te b/tracking_denials/logger_app.te index fe3f6f02..34a5eb92 100644 --- a/tracking_denials/logger_app.te +++ b/tracking_denials/logger_app.te @@ -28,3 +28,7 @@ dontaudit logger_app vendor_gps_file:dir { open }; dontaudit logger_app vendor_gps_file:dir { read }; # b/207431041 dontaudit logger_app sysfs_vendor_sched:dir { search }; +# b/207571546 +dontaudit logger_app vendor_gps_file:dir { remove_name }; +dontaudit logger_app vendor_gps_file:dir { write }; +dontaudit logger_app vendor_gps_file:file { unlink }; diff --git a/tracking_denials/ssr_detector_app.te b/tracking_denials/ssr_detector_app.te index dd4768b2..182b08e1 100644 --- a/tracking_denials/ssr_detector_app.te +++ b/tracking_denials/ssr_detector_app.te @@ -3,3 +3,10 @@ dontaudit ssr_detector_app vendor_persist_sys_default_prop:file { getattr }; dontaudit ssr_detector_app vendor_persist_sys_default_prop:file { map }; dontaudit ssr_detector_app vendor_persist_sys_default_prop:file { open }; dontaudit ssr_detector_app vendor_persist_sys_default_prop:file { read }; +# b/207571417 +dontaudit ssr_detector_app cgroup:file { open }; +dontaudit ssr_detector_app cgroup:file { write }; +dontaudit ssr_detector_app sysfs:file { getattr }; +dontaudit ssr_detector_app sysfs:file { open }; +dontaudit ssr_detector_app sysfs:file { read }; +dontaudit ssr_detector_app sysfs:file { write };