Commit graph

1800 commits

Author SHA1 Message Date
Adam Shih
1cdfdb4262 use gs-common gps dump
Bug: 273380509
Test: adb bugreport
Change-Id: I7d5fa2f086aeab1b94fe33b3f419d5fb58bfbda5
2023-03-22 12:26:10 +08:00
Jörg Wagner
28503a8706 Update Mali DDK to r40 : Additional SELinux settings
Expose DDK's dynamic configuration options through the Android Sysprop
interface, following recommendations from Arm's Android Integration
Manual.

Bug: 261718474

(cherry picked from commit 4183daf7f1)
Merged-In: I75457d2d4f6e37bdd85329bac7fd81327cfff628
Change-Id: Ic40d6576537fc6699e3315040236e79aba16af18
2023-03-21 10:32:25 +00:00
Adam Shih
831323cd81 use gxp dump in gs-common
Bug: 273380509
Test: adb bugreport;unzip *zip;tar -xvf dumpstate_board.bin
And found gxp content

Change-Id: I5a1e77f756a0ec045a578c4ca9bced689d8d9d9c
2023-03-21 11:19:21 +08:00
Adam Shih
0f80193c30 use gs-common camera dump
Bug: 273380509
Test: adb bugreport
Change-Id: I925fbbba81a92689c4590df4a8d7529cc8b57bf8
2023-03-20 11:14:44 +08:00
Mahesh Kallelil
0e62b47df9 Update selinux-policy for ModemService.
Allowing the ModemService write access to the sysfs attribute
cp_temp which is used to update the thermal zones.

Test: Verified sysfs attribute security labels
Bug: 267485434
Change-Id: I0915969bfa6354e1884088476fc59cd8027bd2f1
Signed-off-by: Mahesh Kallelil <kallelil@google.com>
2023-03-16 05:33:46 +00:00
Adam Shih
f5a068e2bf use gs-common soc dump
Bug: 273380509
Test: adb bugreport
Change-Id: I81cd197c1a7c9f19ad9a3c30b65b4499de04b184
2023-03-15 05:59:09 +00:00
Enzo Liao
3ff7d6817f SSRestarDetector: modify the SELinux policy to allow access files owned by system for Whitechapel Pro. am: b38886146a am: 7640930323
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/21946204

Change-Id: I3e0cea14177bac92af9113a6aeeb9bd0970e7068
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2023-03-15 05:14:55 +00:00
Enzo Liao
7640930323 SSRestarDetector: modify the SELinux policy to allow access files owned by system for Whitechapel Pro. am: b38886146a
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/21946204

Change-Id: I763de4896af0f56204d91b874d6aae2519c5e9db
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2023-03-15 04:38:42 +00:00
Xin Li
79f362de88 [automerger skipped] Merge Android 13 QPR2 am: 665b8598f2 -s ours am: f61bda9e67 -s ours am: 67621bec34 -s ours
am skip reason: Merged-In I0b4f80371385bf0ddb0c44e81b1893bb80c7a63d with SHA-1 f70e73af58 is already in history

Original change: https://android-review.googlesource.com/c/device/google/gs201-sepolicy/+/2486783

Change-Id: I707d83fad07144e33b6feded76fd061d19fd085e
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2023-03-15 00:06:07 +00:00
Xin Li
67621bec34 [automerger skipped] Merge Android 13 QPR2 am: 665b8598f2 -s ours am: f61bda9e67 -s ours
am skip reason: Merged-In I0b4f80371385bf0ddb0c44e81b1893bb80c7a63d with SHA-1 f70e73af58 is already in history

Original change: https://android-review.googlesource.com/c/device/google/gs201-sepolicy/+/2486783

Change-Id: Ibbdaf2aa02395da19b5c77095364785415d4d505
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2023-03-14 23:06:01 +00:00
Xin Li
f61bda9e67 [automerger skipped] Merge Android 13 QPR2 am: 665b8598f2 -s ours
am skip reason: Merged-In I0b4f80371385bf0ddb0c44e81b1893bb80c7a63d with SHA-1 f70e73af58 is already in history

Original change: https://android-review.googlesource.com/c/device/google/gs201-sepolicy/+/2486783

Change-Id: Id256ea88817ccd942579aa2202abce48ae50a0a1
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2023-03-14 22:32:04 +00:00
Xin Li
665b8598f2 Merge Android 13 QPR2
Bug: 273316506
Merged-In: I0b4f80371385bf0ddb0c44e81b1893bb80c7a63d
Change-Id: I667f2c59630e12e2500b3c766a53d1b38f0259bd
2023-03-13 23:09:33 -07:00
Jasmine Cha
915841aada audio: move set_prop to gs-common
Bug: 259161622
Test: build pass

Change-Id: If9c6d5641a05768446a7b618e447a1d11ad5daab
Signed-off-by: Jasmine Cha <chajasmine@google.com>
2023-03-13 10:55:25 +08:00
Enzo Liao
b38886146a SSRestarDetector: modify the SELinux policy to allow access files owned by system for Whitechapel Pro.
It needs to access a file pushed by hosts of test suites (details: http://go/pd-client-for-lab#heading=h.wtp07hbqvwgx)

Bug: 234359369
Design: http://go/pd-client-for-lab
Test: manual (http://b/271555983#comment3)
Change-Id: I0ecc64407118107860db434f0eb22cab0f55a2ba
2023-03-10 15:25:51 +08:00
Adam Shih
fc86ce114c move modem operation to dump_modemlog
Bug: 240530709
Test: adb bugreport
Change-Id: I1b5c7defc0b6cb04899d03f1f71f0ac1fe21ed80
2023-03-10 12:14:54 +08:00
Jasmine Cha
c50fcf4794 audio: move sepolicy about audio to gs-common
Bug: 259161622
Test: build pass and check with audio ext hidl/aidl

Change-Id: Id9fa7130db9b94a25381d10984ad245658847345
Signed-off-by: Jasmine Cha <chajasmine@google.com>
2023-03-10 02:05:58 +00:00
Krzysztof Kosiński
3758cdb733 Clean up Google Camera App tracking_denials.
EdgeTPU access is already allowed. Vendor property access should
be denied and is not an error (most likely from library code
that tries to access nonexistent Mediatek-specific properties).

Fix: 209889068
Test: presubmit, run GCA
Change-Id: Id200da6627ceae1ca6315ea9b4473f61fdc285d0
2023-03-10 01:00:44 +00:00
Adam Shih
3c494301c8 Move display dump to gs-common
Bug: 269212897
Test: adb bugreport
Change-Id: I8d2d0413987629bd3774034a5f99f5b7feb4b3ba
2023-03-07 12:35:16 +08:00
Salmax Chang
6312c2c014 modem_svc_sit: grant modem property access am: 12a731b61e am: 037e986412 am: 064f8eb40b
Original change: https://android-review.googlesource.com/c/device/google/gs201-sepolicy/+/2459793

Change-Id: Ib71ce8f0289ccc3619d6b323e85f992fe96d6106
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2023-03-01 07:44:16 +00:00
Salmax Chang
064f8eb40b modem_svc_sit: grant modem property access am: 12a731b61e am: 037e986412
Original change: https://android-review.googlesource.com/c/device/google/gs201-sepolicy/+/2459793

Change-Id: I617cb3a7d2becaaa2f0cf019fbdb9c88a92548d7
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2023-03-01 06:49:44 +00:00
Salmax Chang
037e986412 modem_svc_sit: grant modem property access am: 12a731b61e
Original change: https://android-review.googlesource.com/c/device/google/gs201-sepolicy/+/2459793

Change-Id: I6432be5a512e7302841b3a705bebfbf260a8e1d9
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2023-03-01 06:12:30 +00:00
Salmax Chang
12a731b61e modem_svc_sit: grant modem property access
Bug: 247669574
Change-Id: I02f58f04ee0daca9cabb055ed2fb7fe2653831af
2023-03-01 01:17:49 +08:00
Ken Tsou
e4fad2e355 hal_health_default: allow to access persist.vendor.shutdown.* am: 55d345c5e8 am: 877a01aa5e
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/21455545

Change-Id: I7819419ef876b10affac4978f924988e8a57f024
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2023-02-18 15:53:32 +00:00
Ken Tsou
877a01aa5e hal_health_default: allow to access persist.vendor.shutdown.* am: 55d345c5e8
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/21455545

Change-Id: Ia7992178f55c2863f99474ad8e0349c3aacd1aeb
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2023-02-18 14:52:58 +00:00
Ken Tsou
55d345c5e8 hal_health_default: allow to access persist.vendor.shutdown.*
msg='avc: denied { set } for property=persist.vendor.shutdown.voltage_avg pid=908 uid=1000 gid=1000 scontext=u:r:hal_health_default:s0 tcontext=u:object_r:vendor_default_prop:s0 tclass=property_service permissive=0'

Bug: 266181615
Change-Id: Ia87610f0363bbfbe4fe446244b44818c273841f4
Signed-off-by: Ken Tsou <kentsou@google.com>
2023-02-16 10:37:44 +08:00
Adam Shih
8c4ca7b5a4 remove same_process_hal access from gxp firmware
Bug: 246218258
Test: boot with no relevant SELinux errors
Change-Id: I52c82ff4c70cb16057cf719059f63c3f9c381c46
2023-02-16 00:02:13 +00:00
Jeffrey Kardatzke
d1daf18a6a tracking_denials: Remove b/237492145
Bug: 237492145
Test: TreeHugger
Change-Id: I2874665d4166e951de6b9f6ab15be62a35777ad2
2023-02-15 19:21:56 +00:00
Thiébaud Weksteen
1a72a34a91 Remove bug_map entry for incident
hal_input_processor_default was fixed in b/219172252

Bug: 239632439
Test: presubmit
Change-Id: Idaa9bff7130d54bf24260e26b43605a60dcb7525
2023-02-15 00:50:55 +00:00
Treehugger Robot
45583701ab Merge "Map AIDL Gatekeeper to same policy as HIDL version" am: 643a4aa018 am: d67d52eb4f am: 68c7241129
Original change: https://android-review.googlesource.com/c/device/google/gs201-sepolicy/+/2424367

Change-Id: Ic65e69e5095b5fadf7ebae056785b81d72144139
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2023-02-14 20:44:30 +00:00
Treehugger Robot
68c7241129 Merge "Map AIDL Gatekeeper to same policy as HIDL version" am: 643a4aa018 am: d67d52eb4f
Original change: https://android-review.googlesource.com/c/device/google/gs201-sepolicy/+/2424367

Change-Id: Ibf36bb7559b4a2a91dd6ce063db28828b80b90a5
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2023-02-14 19:41:21 +00:00
Treehugger Robot
d67d52eb4f Merge "Map AIDL Gatekeeper to same policy as HIDL version" am: 643a4aa018
Original change: https://android-review.googlesource.com/c/device/google/gs201-sepolicy/+/2424367

Change-Id: If7561935299aa965f69919dbac04fcf807bf7c7a
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2023-02-14 18:56:36 +00:00
Treehugger Robot
643a4aa018 Merge "Map AIDL Gatekeeper to same policy as HIDL version" 2023-02-14 17:48:17 +00:00
Adam Shih
6defd8cbc8 Move memory dump to gs-common
Bug: 240530709
Test: adb bugreport
Change-Id: I304899f1c9eb1a77ef7559194ab4cfed9daf30ef
2023-02-14 07:22:05 +00:00
Adam Shih
333b450ee7 move tablet settings to gs-common
Bug: 240530709
Test: adb bugreport
Change-Id: I2bac842aaab1737b2fcecd232e82d49f00439607
2023-02-14 04:28:30 +00:00
sukiliu
4c372ff5cd Update SELinux error
Test: scanBugreport
Bug: 268147113
Bug: 268566483
Bug: 268147092
Change-Id: Ia0755baf0d2b9cd02e9d69da29cf87120ae13bbe
2023-02-10 10:20:48 +08:00
Subrahmanyaman
b05ec9c753 Map AIDL Gatekeeper to same policy as HIDL version
Bug: 268342724
Test: VtsHalGatekeeperTargetTest
Change-Id: Ic2849f8f00aea80e707a85334364f8ecfe7a64e3
2023-02-08 18:36:45 +00:00
Ken Yang
1d9a7c5877 WLC: Add required sysfs_wlc sepolicies
The sysfs_wlc is still required for certain services like
hal_health_default. Add these sepolicies to pass the tests.

Bug: 267171670
Change-Id: Id2687a4ac72e04e537704d036155167b68aeca7c
Signed-off-by: Ken Yang <yangken@google.com>
2023-02-05 02:30:34 +00:00
Ray Chi
dadd1df282 [automerger skipped] [DO NOT MERGE] usb: Add sepolicy for extcon access am: 03fb0f6ceb am: 2265901763 -s ours
am skip reason: subject contains skip directive

Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/20729301

Change-Id: I89550dd2f3dd57683a3066f2107a68d895cb3769
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2023-02-04 05:06:52 +00:00
Ray Chi
2265901763 [DO NOT MERGE] usb: Add sepolicy for extcon access am: 03fb0f6ceb
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/20729301

Change-Id: Icf1e3a628c4a7e040efd639e16b4a631ea7349ba
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2023-02-04 04:37:05 +00:00
Nicolas Geoffray
27eea9a08a Allow ssr_detector_app directory creation in system_app_data_file. am: 029a072be5 am: ad2ebe9f69 am: cee4578a87
Original change: https://android-review.googlesource.com/c/device/google/gs201-sepolicy/+/2421223

Change-Id: Ib99ec0b32daaada2384ffa4592c061b32df7501a
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2023-02-03 15:38:23 +00:00
Nicolas Geoffray
cee4578a87 Allow ssr_detector_app directory creation in system_app_data_file. am: 029a072be5 am: ad2ebe9f69
Original change: https://android-review.googlesource.com/c/device/google/gs201-sepolicy/+/2421223

Change-Id: I50020f8d16d0ea26b0e1ca253f91ee889db68989
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2023-02-03 15:06:32 +00:00
Ray Chi
03fb0f6ceb [DO NOT MERGE] usb: Add sepolicy for extcon access
USB gadget hal will access extcon folder so that this patch
will add new rule to allow USB gadget hal to access extcon.

Bug: 263435622
Test: build pass
Change-Id: I971732c6a40700a85df61170dcf1c3660307b96c
2023-02-03 14:47:40 +00:00
Nicolas Geoffray
ad2ebe9f69 Allow ssr_detector_app directory creation in system_app_data_file. am: 029a072be5
Original change: https://android-review.googlesource.com/c/device/google/gs201-sepolicy/+/2421223

Change-Id: I8631d5a2cc63244c5a8ba68f177ee321d89abc91
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2023-02-03 14:39:40 +00:00
Taylor Nelms
2243ee16ef [automerger skipped] Modify permissions to allow dumpstate process to access decon_counters node am: 6e04b082f7 am: 2ecc683965 -s ours
am skip reason: Merged-In I656ebdcd0f92f2cc3e16de19075e94ada339a39b with SHA-1 ca38b9685b is already in history

Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/21040691

Change-Id: Id04337416d4b4558d565f26fea0fbf2b0465c9d9
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2023-02-03 14:17:03 +00:00
Taylor Nelms
2ecc683965 Modify permissions to allow dumpstate process to access decon_counters node am: 6e04b082f7
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/21040691

Change-Id: Ia856c130f890537cb834687903d1f7bcb1081166
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2023-02-03 13:47:32 +00:00
Taylor Nelms
6e04b082f7 Modify permissions to allow dumpstate process to access decon_counters node
Bug: 240346564
Test: Build for Cheetah device with "user" build,
check bugreport for decon_counters content
Merged-In: I656ebdcd0f92f2cc3e16de19075e94ada339a39b
Change-Id: I6aea0bc545805f9f066272e08f5c37f71baf304e
Signed-off-by: Taylor Nelms <tknelms@google.com>
2023-02-03 13:18:02 +00:00
Nicolas Geoffray
029a072be5 Allow ssr_detector_app directory creation in system_app_data_file.
Bug: 260557058
Test: m
Change-Id: Ia8917316fc653465070a875a806b9707d8112230
2023-02-03 13:08:30 +00:00
Sajid Dalvi
e80669242c logbuffer: Add pcie driver support am: eb745cabd1 am: cf7bb88b7a
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/21077111

Change-Id: I81cac496ef80ab9f41f6648e8a43fa277ec72d46
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2023-02-03 06:11:57 +00:00
Sajid Dalvi
cf7bb88b7a logbuffer: Add pcie driver support am: eb745cabd1
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/21077111

Change-Id: I36a37418005f271ac2325ccf5b395086befdea5a
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2023-02-03 05:41:29 +00:00
Kadyr Narmamatov
b876b5398f modem_svc_sit: Grant permission to read vendor_fw_file am: 80f1fbbf9d am: 8105be362a am: 84eb6c3751
Original change: https://android-review.googlesource.com/c/device/google/gs201-sepolicy/+/2411196

Change-Id: Iba090442873014e03a140973d636ba6bee49348a
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2023-02-02 22:44:52 +00:00