Allow Trusty storageproxy property am: 5cd114d3a0
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/20545996 Change-Id: I76672b0e56c352e1991811bcaddac660fe05d0b7 Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
This commit is contained in:
commit
9fb7618e6b
4 changed files with 11 additions and 0 deletions
|
@ -40,3 +40,6 @@ vendor_internal_prop(vendor_telephony_app_prop)
|
|||
# Battery Mitigation
|
||||
vendor_internal_prop(vendor_mitigation_ready_prop)
|
||||
vendor_public_prop(vendor_brownout_reason_prop)
|
||||
|
||||
# Trusty storage FS ready
|
||||
vendor_internal_prop(vendor_trusty_storage_prop)
|
||||
|
|
|
@ -110,3 +110,6 @@ vendor.config.debug. u:object_r:vendor_telephony_app_prop:
|
|||
# Battery Mitigation
|
||||
vendor.brownout.mitigation.ready u:object_r:vendor_mitigation_ready_prop:s0
|
||||
vendor.brownout_reason u:object_r:vendor_brownout_reason_prop:s0
|
||||
|
||||
# Trusty
|
||||
ro.vendor.trusty.storage.fs_ready u:object_r:vendor_trusty_storage_prop:s0
|
||||
|
|
|
@ -15,3 +15,5 @@ read_fstab(tee)
|
|||
# storageproxyd starts before /data is mounted. It handles /data not being there
|
||||
# gracefully. However, attempts to access /data trigger a denial.
|
||||
dontaudit tee unlabeled:dir { search };
|
||||
|
||||
set_prop(tee, vendor_trusty_storage_prop)
|
||||
|
|
|
@ -41,3 +41,6 @@ set_prop(vendor_init, vendor_brownout_reason_prop)
|
|||
|
||||
# MM
|
||||
allow vendor_init proc_watermark_scale_factor:file w_file_perms;
|
||||
|
||||
# Trusty storage FS ready
|
||||
get_prop(vendor_init, vendor_trusty_storage_prop)
|
||||
|
|
Loading…
Add table
Add a link
Reference in a new issue