Add sepolicy for dumpstate to zip tcpdump into bugreport

Bug: 239634976
Test: 1. Enable tcpdump_logger always-on function
      2. Dump bugreport
      3. Pull dumpstate_board.bin and chagne it to zip
      4. Unzip dumpstate_board.zip and check if tcpdump files
         are there.
Change-Id: I01b9b25a6236bcfa1ce2b89afb3ed1bc2ef49cae
Merged-In: I01b9b25a6236bcfa1ce2b89afb3ed1bc2ef49cae
(cherry picked from commit ee1b7d6bb4)
This commit is contained in:
lucaslin 2022-07-29 16:38:51 +08:00 committed by Lucas Lin
parent b34d1c1ed0
commit 81616f3ad0

View file

@ -126,6 +126,10 @@ userdebug_or_eng(`
allow hal_dumpstate_default vendor_page_pinner_debugfs:file r_file_perms;
allow hal_dumpstate_default vendor_cma_debugfs:dir r_dir_perms;
allow hal_dumpstate_default vendor_cma_debugfs:file r_file_perms;
allow hal_dumpstate_default tcpdump_vendor_data_file:dir create_dir_perms;
allow hal_dumpstate_default tcpdump_vendor_data_file:file create_file_perms;
set_prop(hal_dumpstate_default, vendor_tcpdump_log_prop)
')
dontaudit hal_dumpstate_default mnt_vendor_file:dir search;
@ -150,3 +154,6 @@ dontaudit hal_dumpstate_default vendor_page_pinner_debugfs:dir search;
dontaudit hal_dumpstate_default vendor_page_pinner_debugfs:file r_file_perms;
dontaudit hal_dumpstate_default vendor_cma_debugfs:dir r_dir_perms;
dontaudit hal_dumpstate_default vendor_cma_debugfs:file r_file_perms;
dontaudit hal_dumpstate_default tcpdump_vendor_data_file:dir create_dir_perms;
dontaudit hal_dumpstate_default tcpdump_vendor_data_file:file create_file_perms;
dontaudit hal_dumpstate_default vendor_tcpdump_log_prop:file r_file_perms;