From 438a3edc88d43fe177a2ad2122e634ca13b4f350 Mon Sep 17 00:00:00 2001 From: Nina Chen Date: Mon, 9 Dec 2024 11:40:41 +0800 Subject: [PATCH 1/2] Update SELinux error copy bug_map entry from gs201 Test: SELinuxUncheckedDenialBootTest Bug: 383013727 Flag: EXEMPT sepolicy Change-Id: I78e6c558e24cc0c444143510470151ebb3c258af --- tracking_denials/bug_map | 1 + 1 file changed, 1 insertion(+) diff --git a/tracking_denials/bug_map b/tracking_denials/bug_map index 0d6c70f9..9246974a 100644 --- a/tracking_denials/bug_map +++ b/tracking_denials/bug_map @@ -4,6 +4,7 @@ dump_display sysfs file b/350831939 dump_modem sscoredump_vendor_data_coredump_file dir b/361726277 dump_modem sscoredump_vendor_data_logcat_file dir b/361726277 dumpstate unlabeled file b/350832009 +hal_camera_default aconfig_storage_metadata_file dir b/383013727 hal_face_default traced_producer_socket sock_file b/305600808 hal_power_default hal_power_default capability b/237492146 hal_sensors_default property_socket sock_file b/373755350 From d1f806c78b9e0d29918533958af8c04b4715193c Mon Sep 17 00:00:00 2001 From: Eileen Lai Date: Sun, 8 Dec 2024 06:52:24 +0000 Subject: [PATCH 2/2] modem_svc: move shared_modem_platform related sepolicy to gs-common Bug: 372400955 Change-Id: I3e19432ab7cf6b18b277a877d1cdbc9ebf687af9 Flag: NONE local testing only --- gs201-sepolicy.mk | 2 +- whitechapel_pro/file_contexts | 1 - whitechapel_pro/modem_svc_sit.te | 3 --- 3 files changed, 1 insertion(+), 5 deletions(-) diff --git a/gs201-sepolicy.mk b/gs201-sepolicy.mk index 2c5da1fc..645ca751 100644 --- a/gs201-sepolicy.mk +++ b/gs201-sepolicy.mk @@ -1,5 +1,5 @@ # sepolicy that are shared among devices using whitechapel -BOARD_SEPOLICY_DIRS += device/google/gs201-sepolicy/whitechapel_pro +BOARD_VENDOR_SEPOLICY_DIRS += device/google/gs201-sepolicy/whitechapel_pro # unresolved SELinux error log with bug tracking BOARD_SEPOLICY_DIRS += device/google/gs201-sepolicy/tracking_denials diff --git a/whitechapel_pro/file_contexts b/whitechapel_pro/file_contexts index 1b200b21..0d5a2fb1 100644 --- a/whitechapel_pro/file_contexts +++ b/whitechapel_pro/file_contexts @@ -5,7 +5,6 @@ /vendor/bin/vcd u:object_r:vcd_exec:s0 /vendor/bin/chre u:object_r:chre_exec:s0 /vendor/bin/cbd u:object_r:cbd_exec:s0 -/vendor/bin/shared_modem_platform u:object_r:modem_svc_sit_exec:s0 /vendor/bin/rfsd u:object_r:rfsd_exec:s0 /vendor/bin/bipchmgr u:object_r:bipchmgr_exec:s0 /vendor/bin/storageproxyd u:object_r:tee_exec:s0 diff --git a/whitechapel_pro/modem_svc_sit.te b/whitechapel_pro/modem_svc_sit.te index d93789d7..0097a46a 100644 --- a/whitechapel_pro/modem_svc_sit.te +++ b/whitechapel_pro/modem_svc_sit.te @@ -38,9 +38,6 @@ get_prop(modem_svc_sit, hwservicemanager_prop) # logging property get_prop(modem_svc_sit, vendor_logger_prop) -# Modem SVC will register the default instance of the AIDL ISharedModemPlatform hal. -hal_server_domain(modem_svc_sit, hal_shared_modem_platform) - userdebug_or_eng(` allow modem_svc_sit radio_test_device:chr_file rw_file_perms; ')