From 9748ae74c2a893d0d916df3d94258231ee489968 Mon Sep 17 00:00:00 2001 From: Ted Lin Date: Thu, 13 Jan 2022 16:40:42 +0800 Subject: [PATCH] Using dontaudit to fix the avc on boot test [ 1.950092] audit: type=1400 audit(1641787406.988:2): avc: denied { search } for pid=49 comm="kworker/7:0" name="google_battery" dev="debugfs" ino=36095 scontext=u:r:kernel:s0 tcontext=u:object_r:vendor_battery_debugfs:s0 tclass=dir permissive=1 Bug: 213817227 Test: check bugreport Change-Id: Ia056856476a17feb40c20c21cf1515e0feddfc17 Signed-off-by: Ted Lin --- whitechapel_pro/kernel.te | 2 ++ 1 file changed, 2 insertions(+) diff --git a/whitechapel_pro/kernel.te b/whitechapel_pro/kernel.te index 0156784e..c34e7f72 100644 --- a/whitechapel_pro/kernel.te +++ b/whitechapel_pro/kernel.te @@ -7,3 +7,5 @@ allow kernel per_boot_file:file r_file_perms; # memlat needs permision to create/delete perf events when hotplug on/off allow kernel self:capability2 perfmon; allow kernel self:perf_event cpu; + +dontaudit kernel vendor_battery_debugfs:dir search;