Commit graph

1499 commits

Author SHA1 Message Date
Andy Hsu
2a22a2afc9 Add policy to allow GoogleCameraApp access HAL to apply CPU/GPU boost. am: 38ddaa255e am: cb2ea8b415
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18611816

Change-Id: I9dbe5de74714c368aa937f74a64219776a0f840d
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-06-01 00:52:43 +00:00
Ankit Goyal
b7aba93a27 Add SE policies for memtrack HAL am: 5be857af43 am: f67dde58a8 am: 3309160d93
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18638327

Change-Id: Ia94b5a2cfe98e9643289bca26923da0822e7a57c
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-06-01 00:25:24 +00:00
Ankit Goyal
c4a5886408 Add SE policies for memtrack HAL am: 5be857af43 am: b6ff456519 am: ab71f17d11
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18638327

Change-Id: Ib44be45f890b5c1913a05c5bf928b26830dbfd2c
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-06-01 00:24:42 +00:00
Andy Hsu
df582294bd Add policy to allow GoogleCameraApp access HAL to apply CPU/GPU boost. am: 38ddaa255e
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18611816

Change-Id: I1b1f04a116c81d21212d3a703e21d64cf921a737
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-06-01 00:17:35 +00:00
Andy Hsu
cb2ea8b415 Add policy to allow GoogleCameraApp access HAL to apply CPU/GPU boost. am: 38ddaa255e
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18611816

Change-Id: If8b3bd00da683ee1b63302f11a3d87638ac8ce8d
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-06-01 00:17:24 +00:00
Ankit Goyal
3309160d93 Add SE policies for memtrack HAL am: 5be857af43 am: f67dde58a8
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18638327

Change-Id: I220917b3bd061b73fd659a7ec819f0e6458ba718
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-06-01 00:01:24 +00:00
Ankit Goyal
ab71f17d11 Add SE policies for memtrack HAL am: 5be857af43 am: b6ff456519
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18638327

Change-Id: I83ea22dce95f8d6f259184d55c10c98afab5cdfd
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-06-01 00:00:54 +00:00
Andy Hsu
38ddaa255e Add policy to allow GoogleCameraApp access HAL to apply CPU/GPU boost.
To fix the denial message:
avc:  denied  { find } for pid=4646 uid=10134 name=android.hardware.power.IPower/default scontext=u:r:google_camera_app:s0:c134,c256,c512,c768 tcontext=u:object_r:hal_power_service:s0 tclass=service_manager permissive=0

Reference: go/sepolicy.

On P21, we have ag/14692156 to access PowerHAL in GCA. On P22, we currently don't have the permission (b/233998391#comment10). This change fixes this issue.

Bug: 233998391
Bug: 232184722
Bug: 232022128

Test: Boost is applied successfully b/233998391#comment11. GCA.

Change-Id: Id1a938fc0af0ad9280aa49e7f6cbdf45c16f8b38
2022-05-31 23:57:19 +00:00
Ankit Goyal
f67dde58a8 Add SE policies for memtrack HAL am: 5be857af43
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18638327

Change-Id: Iad6cb2dd43fc7eb8ca22e7c26c601e0211bb2ed9
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-05-31 23:39:54 +00:00
Ankit Goyal
b6ff456519 Add SE policies for memtrack HAL am: 5be857af43
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18638327

Change-Id: I5b0f38beb901b5a18a72135a51f922c2354975db
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-05-31 23:39:38 +00:00
Ankit Goyal
5be857af43 Add SE policies for memtrack HAL
Bug: 220360577
Test: adb shell dumpsys meminfo
Change-Id: I4dfc0c016ccf980b4f7dabd2fb70d2466b69b5cc
2022-05-31 23:25:27 +00:00
Taeju Park
2321f4661b Pixel-EM-DriverV2: sepolicy: allows Power HAL to am: eb4d432dd8 am: 7c607ccd6f am: 070936c46b
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18635845

Change-Id: I879ff29d85d72305aa75c00146738dd2a2a41e34
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-05-31 22:08:40 +00:00
Taeju Park
561f288e51 Pixel-EM-DriverV2: sepolicy: allows Power HAL to am: eb4d432dd8 am: f292277bbd am: 57f67fa7a1
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18635845

Change-Id: Idaeec47d1883e0ad3c7883ed4a5a027647f28b5a
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-05-31 22:08:18 +00:00
Taeju Park
070936c46b Pixel-EM-DriverV2: sepolicy: allows Power HAL to am: eb4d432dd8 am: 7c607ccd6f
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18635845

Change-Id: If09b593b7e0380904792a71744b7c3fd69044eaf
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-05-31 21:29:39 +00:00
Taeju Park
57f67fa7a1 Pixel-EM-DriverV2: sepolicy: allows Power HAL to am: eb4d432dd8 am: f292277bbd
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18635845

Change-Id: I72a1457b2c69c95b6d8f85bd0e7a8f8fd0b97ff9
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-05-31 21:29:13 +00:00
Taeju Park
f292277bbd Pixel-EM-DriverV2: sepolicy: allows Power HAL to am: eb4d432dd8
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18635845

Change-Id: I57405574dd0a776e8b5c4569b50e515fc5150f24
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-05-31 21:07:59 +00:00
Taeju Park
7c607ccd6f Pixel-EM-DriverV2: sepolicy: allows Power HAL to am: eb4d432dd8
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18635845

Change-Id: I1228f0079fffef386a1cd4ed4fa1251dcfa41af7
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-05-31 21:07:55 +00:00
Taeju Park
eb4d432dd8 Pixel-EM-DriverV2: sepolicy: allows Power HAL to
modify em_profile related sysfs nodes

Bug: 170647767
Signed-off-by: Taeju Park <taeju@google.com>
Change-Id: I160741f172a5713535852e7fb0d12126ddf0395e
2022-05-31 20:38:29 +00:00
George Lee
9374dfcf9a dumpstate: Mitigation logger readout - sepolicy am: ee92ac374a am: 565777a4d4 am: de7e3bfdaf
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18605588

Change-Id: I1593e16627d58c887741e6866131cf835dc762af
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-05-27 21:49:44 +00:00
George Lee
7120786778 dumpstate: Mitigation logger readout - sepolicy am: ee92ac374a am: adafddba0a am: 3064b85087
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18605588

Change-Id: I66b9eb65c7e07aaddcf9f0a5b4ef33cb996f5986
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-05-27 21:49:09 +00:00
George Lee
de7e3bfdaf dumpstate: Mitigation logger readout - sepolicy am: ee92ac374a am: 565777a4d4
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18605588

Change-Id: Ia546949616522adcbe0a82db5dcad518229b1f49
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-05-27 21:43:44 +00:00
George Lee
3064b85087 dumpstate: Mitigation logger readout - sepolicy am: ee92ac374a am: adafddba0a
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18605588

Change-Id: I69dd346a7a40ae92d2b68277b81f59d637e8a627
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-05-27 21:43:22 +00:00
George Lee
565777a4d4 dumpstate: Mitigation logger readout - sepolicy am: ee92ac374a
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18605588

Change-Id: Ic17cca8a72d65b8379162eaf0b040089f41e66aa
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-05-27 21:20:27 +00:00
George Lee
adafddba0a dumpstate: Mitigation logger readout - sepolicy am: ee92ac374a
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18605588

Change-Id: Ib737d3365d2bb622a020c38032555a58279d6ab2
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-05-27 21:20:25 +00:00
George Lee
d6474aec89 bcl: Add Mitigation Logger - sepolicy am: bc2cf5c153 am: f283938d32 am: 635121d04c
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18527859

Change-Id: I506a70c69d6f046178ae67269201f77523681314
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-05-27 18:41:57 +00:00
George Lee
6fec1f655f bcl: Add Mitigation Logger - sepolicy am: bc2cf5c153 am: e9621aaa91 am: 724884bbad
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18527859

Change-Id: I1c724540e162b2093319172f88cac667b37d3643
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-05-27 18:41:39 +00:00
George Lee
ee92ac374a dumpstate: Mitigation logger readout - sepolicy
Mitigation Logger logs battery related information for 1 second when it
is triggered by under voltage or over current interrupts.  Information
collected is to help debug system brownout.  This change is to enable
bugreport reading out the mitigation log.

Bug: 228383769
Test: Boot and Test
Signed-off-by: George Lee <geolee@google.com>
Change-Id: Ic0291e05bcf20839a66d50d159bb5ef41681c45d
2022-05-27 11:25:02 -07:00
George Lee
635121d04c bcl: Add Mitigation Logger - sepolicy am: bc2cf5c153 am: f283938d32
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18527859

Change-Id: I2d2c895c7041cf4f91b4c8be9bc9645c3c4eacf8
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-05-27 18:23:02 +00:00
George Lee
724884bbad bcl: Add Mitigation Logger - sepolicy am: bc2cf5c153 am: e9621aaa91
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18527859

Change-Id: I079337663e8430172785959732afb7dd99ad9c81
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-05-27 18:22:44 +00:00
George Lee
f283938d32 bcl: Add Mitigation Logger - sepolicy am: bc2cf5c153
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18527859

Change-Id: I1910b2fe519ce9e6706f827a310a8bc5996840d9
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-05-27 18:06:00 +00:00
George Lee
e9621aaa91 bcl: Add Mitigation Logger - sepolicy am: bc2cf5c153
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18527859

Change-Id: If44783796889a9f6bb479577b16b5705c9b2c605
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-05-27 18:05:57 +00:00
eddielan
6fca8ffb29 [automerger skipped] sepolicy: Add SW35 HIDL factory service into sepolicy am: 36a6b23804 am: 6d8175033d -s ours am: df4f96a9ef -s ours
am skip reason: Merged-In If5c1bc5ddf6a1fa753ac65b6b4c5983775f2f704 with SHA-1 36a6b23804 is already in history

Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18626554

Change-Id: I20e5defb25cfdcc6a5b5bfe00f33102995c08f64
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-05-27 05:27:17 +00:00
eddielan
a75ce3ceeb [automerger skipped] sepolicy: Add SW35 HIDL factory service into sepolicy am: 36a6b23804 -s ours am: 464a71b3b6 -s ours am: 8d79ac0e8c -s ours
am skip reason: Merged-In If5c1bc5ddf6a1fa753ac65b6b4c5983775f2f704 with SHA-1 aeb9bd0406 is already in history

Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18626554

Change-Id: I77e415f05d6f06328f683826483193d8fa458992
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-05-27 05:26:48 +00:00
eddielan
df4f96a9ef [automerger skipped] sepolicy: Add SW35 HIDL factory service into sepolicy am: 36a6b23804 am: 6d8175033d -s ours
am skip reason: Merged-In If5c1bc5ddf6a1fa753ac65b6b4c5983775f2f704 with SHA-1 36a6b23804 is already in history

Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18626554

Change-Id: I7f3f5433a40b320ebda5188b71a6a65f1a715076
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-05-27 04:54:26 +00:00
eddielan
8d79ac0e8c [automerger skipped] sepolicy: Add SW35 HIDL factory service into sepolicy am: 36a6b23804 -s ours am: 464a71b3b6 -s ours
am skip reason: Merged-In If5c1bc5ddf6a1fa753ac65b6b4c5983775f2f704 with SHA-1 aeb9bd0406 is already in history

Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18626554

Change-Id: I1be7e8e562b2e059794aed85e74365324cf7ba25
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-05-27 04:53:49 +00:00
George Lee
bc2cf5c153 bcl: Add Mitigation Logger - sepolicy
Mitigation Logger logs battery related information for 1 second when it
is triggered by under voltage or over current interrupts.  Information
collected is to help debug system brownout.

Bug: 228383769
Test: Boot and Test
Signed-off-by: George Lee <geolee@google.com>
Change-Id: I9ac873d03d57d9a6db8d9233f25c8fabdfc399a5
2022-05-26 21:39:25 -07:00
eddielan
6d8175033d sepolicy: Add SW35 HIDL factory service into sepolicy am: 36a6b23804
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18626554

Change-Id: Ib754baafed214f6d794a0646661e202af9534717
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-05-27 04:33:14 +00:00
eddielan
464a71b3b6 [automerger skipped] sepolicy: Add SW35 HIDL factory service into sepolicy am: 36a6b23804 -s ours
am skip reason: Merged-In If5c1bc5ddf6a1fa753ac65b6b4c5983775f2f704 with SHA-1 aeb9bd0406 is already in history

Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18626554

Change-Id: I21fac30e6097708e5fa6b7510f5bcd164cb85538
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-05-27 04:32:32 +00:00
eddielan
36a6b23804 sepolicy: Add SW35 HIDL factory service into sepolicy
Bug: 231549391
Test: Build Pass
Change-Id: If5c1bc5ddf6a1fa753ac65b6b4c5983775f2f704
(cherry picked from commit aeb9bd0406)
Merged-In: If5c1bc5ddf6a1fa753ac65b6b4c5983775f2f704
2022-05-27 01:29:31 +00:00
Badhri Jagan Sridharan
39ddbb6a3b Allow gadget hal to search i2c dir and write to usb_limit_accessory_enable am: 91a1f49a8a am: b401becb46
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18553772

Change-Id: Ia1d708cd4c1989425fc4a5fa74de1eaf6c04145c
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-05-26 03:07:08 +00:00
Jaegeuk Kim
5caf69b4ee Allow sysfs_devices_block to f2fs-tools am: 81d01513de am: 172d63d23c
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18596425

Change-Id: I60e6c75362a7dc104e55eb9868fa8861179acb81
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-05-26 02:21:37 +00:00
Jaegeuk Kim
268f285807 Allow sysfs_devices_block to f2fs-tools am: 2ddc8ee333
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18596426

Change-Id: I0d50ab6bbc2fa5cd5758fa0b0561f84e51a122e7
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-05-26 02:21:29 +00:00
Jaegeuk Kim
172d63d23c Allow sysfs_devices_block to f2fs-tools am: 81d01513de
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18596425

Change-Id: Ifa7b292b61d526c63009df50c52f105002cd2e5b
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-05-26 02:20:22 +00:00
Jaegeuk Kim
2ddc8ee333 Allow sysfs_devices_block to f2fs-tools
The fsck.f2fs checks the sysfs entries of block devices to get disk
information. Note that, the block device entries are device-specific.

1. fsck.f2fs
avc: denied { search } for comm="fsck.f2fs" name="0:0:0:0" dev="sysfs" ino=59803 scontext=u:r:fsck:s0 tcontext=u:object_r:sysfs_scsi_devices_0000:s0 tclass=dir permissive=0
avc: denied { getattr } for comm="fsck.f2fs" path="/sys/devices/platform/14700000.ufs/host0/target0:0:0/0:0:0:0/block/sda/sda7/partition" dev="sysfs" ino=60672 scontext=u:r:fsck:s0 tcontext=u:object_r:sysfs_scsi_devices_0000:s0 tclass=file permissive=0

2. mkfs.f2fs
avc: denied { search } for comm="make_f2fs" name="0:0:0:0" dev="sysfs" ino=59803 scontext=u:r:e2fs:s0 tcontext=u:object_r:sysfs_scsi_devices_0000:s0 tclass=dir permissive=0
avc: denied { getattr } for comm="make_f2fs" path="/sys/devices/platform/14700000.ufs/host0/target0:0:0/0:0:0:0/block/sda/sda8/partition" dev="sysfs" ino=61046 scontext=u:r:e2fs:s0 tcontext=u:object_r:sysfs_scsi_devices_0000:s0 tclass=file permissive=0

Bug: 233835698
Bug: 172377740
Signed-off-by: Jaegeuk Kim <jaegeuk@google.com>
Change-Id: I409feec84565f965baa96b06a5b08bcfc1a8db02
2022-05-25 15:32:56 +00:00
Jaegeuk Kim
81d01513de Allow sysfs_devices_block to f2fs-tools
The fsck.f2fs checks the sysfs entries of block devices to get disk
information. Note that, the block device entries are device-specific.

1. fsck.f2fs
avc: denied { search } for comm="fsck.f2fs" name="0:0:0:0" dev="sysfs" ino=59803 scontext=u:r:fsck:s0 tcontext=u:object_r:sysfs_scsi_devices_0000:s0 tclass=dir permissive=0
avc: denied { getattr } for comm="fsck.f2fs" path="/sys/devices/platform/14700000.ufs/host0/target0:0:0/0:0:0:0/block/sda/sda7/partition" dev="sysfs" ino=60672 scontext=u:r:fsck:s0 tcontext=u:object_r:sysfs_scsi_devices_0000:s0 tclass=file permissive=0

2. mkfs.f2fs
avc: denied { search } for comm="make_f2fs" name="0:0:0:0" dev="sysfs" ino=59803 scontext=u:r:e2fs:s0 tcontext=u:object_r:sysfs_scsi_devices_0000:s0 tclass=dir permissive=0
avc: denied { getattr } for comm="make_f2fs" path="/sys/devices/platform/14700000.ufs/host0/target0:0:0/0:0:0:0/block/sda/sda8/partition" dev="sysfs" ino=61046 scontext=u:r:e2fs:s0 tcontext=u:object_r:sysfs_scsi_devices_0000:s0 tclass=file permissive=0

Bug: 233835698
Bug: 172377740
Signed-off-by: Jaegeuk Kim <jaegeuk@google.com>
Change-Id: I409feec84565f965baa96b06a5b08bcfc1a8db02
2022-05-25 15:32:42 +00:00
Jaegeuk Kim
cf23b50955 Allow sysfs_devices_block to f2fs-tools
The fsck.f2fs checks the sysfs entries of block devices to get disk
information. Note that, the block device entries are device-specific.

1. fsck.f2fs
avc: denied { search } for comm="fsck.f2fs" name="0:0:0:0" dev="sysfs" ino=59803 scontext=u:r:fsck:s0 tcontext=u:object_r:sysfs_scsi_devices_0000:s0 tclass=dir permissive=0
avc: denied { getattr } for comm="fsck.f2fs" path="/sys/devices/platform/14700000.ufs/host0/target0:0:0/0:0:0:0/block/sda/sda7/partition" dev="sysfs" ino=60672 scontext=u:r:fsck:s0 tcontext=u:object_r:sysfs_scsi_devices_0000:s0 tclass=file permissive=0

2. mkfs.f2fs
avc: denied { search } for comm="make_f2fs" name="0:0:0:0" dev="sysfs" ino=59803 scontext=u:r:e2fs:s0 tcontext=u:object_r:sysfs_scsi_devices_0000:s0 tclass=dir permissive=0
avc: denied { getattr } for comm="make_f2fs" path="/sys/devices/platform/14700000.ufs/host0/target0:0:0/0:0:0:0/block/sda/sda8/partition" dev="sysfs" ino=61046 scontext=u:r:e2fs:s0 tcontext=u:object_r:sysfs_scsi_devices_0000:s0 tclass=file permissive=0

Bug: 172377740
Signed-off-by: Jaegeuk Kim <jaegeuk@google.com>
Change-Id: I409feec84565f965baa96b06a5b08bcfc1a8db02
2022-05-24 14:07:04 -07:00
Automerger Merge Worker
82e8f58252 Merge "RRS: Apply the default config from persist prop am: 8b2c6f8187 am: a97b993989" into tm-qpr-dev-plus-aosp am: 5dc2e77225
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18401056

Change-Id: I3b1463a9712ff958414a94081d0c9803f562caa2
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-05-24 14:31:51 +00:00
Yichi Chen
18d6166509 RRS: Apply the default config from persist prop am: 8b2c6f8187 am: 94a704eb03 am: f5281632f5
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18401056

Change-Id: I41bd18db2424503b9f75025494da20efbe32a227
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-05-24 14:31:38 +00:00
Automerger Merge Worker
5dc2e77225 Merge "RRS: Apply the default config from persist prop am: 8b2c6f8187 am: a97b993989" into tm-qpr-dev-plus-aosp 2022-05-24 14:11:14 +00:00
Yichi Chen
aac7419dbe RRS: Apply the default config from persist prop am: 8b2c6f8187 am: a97b993989
Original change: https://googleplex-android-review.googlesource.com/c/device/google/gs201-sepolicy/+/18401056

Change-Id: I8ec29dd0e65826780f1918d17f3c7f7318fd8a87
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2022-05-24 14:11:07 +00:00