device_google_gs201/whitechapel_pro
Adam Shih 9c9ae24f64 remove global access to firmware mali
Bug: 220801802
Test: device can resume
Change-Id: Idf0fd84c2efa37c94e30c3f682a09e6546f50235
2022-09-12 12:58:29 +08:00
..
certs Use google_camera_app label for GCA-Next fishfood app. 2022-05-13 05:31:34 +00:00
attributes review the rest of file declaration 2021-10-18 12:01:13 +08:00
audioserver.te Fix AAudio avc denied 2022-03-04 06:14:55 +00:00
battery_mitigation.te bcl: Add Mitigation Logger - sepolicy 2022-05-26 21:39:25 -07:00
bipchmgr.te review bipchmgr 2021-08-30 10:40:57 +08:00
bluetooth.te Add BT HAL SELinux policy 2022-04-04 15:55:43 +00:00
bootanim.te suppress bootanim android watch behavior on phones 2021-11-16 11:02:46 +08:00
bootdevice_sysdev.te review bootdevice_sysdev 2021-09-02 13:24:46 +08:00
cat_engine_service_app.te Add required sepolicy rules for CatEngine 2022-02-16 01:34:11 +00:00
cbd.te cbd: fix avc errors 2022-02-16 01:55:39 +00:00
cbrs_setup.te review cbrs app 2021-08-30 13:30:56 +08:00
cccdk_timesync_app.te Add CccDkTimeSyncService for Digital Key Support 2022-04-15 00:28:13 +00:00
charger_vendor.te Fix off-mode (charger) sepolicy for the health interface 2022-04-08 03:13:51 +00:00
chre.te Allow chre to use WakeLock on whitechapel pro. 2022-08-01 18:49:55 +00:00
con_monitor.te review con_monitor 2021-09-06 11:31:36 +08:00
convert-to-ext4-sh.te convert_to_ext4.sh: suppress test error 2022-08-09 05:27:21 +00:00
debug_camera_app.te Add policy to allow debug camera app (GCAEng and locally built GCANext) to access HAL to apply CPU/GPU boost on userdebug builds. 2022-06-08 02:26:26 +00:00
device.te HwInfo: Move hardware info sepolicy to pixel common 2022-08-03 02:57:28 +00:00
dmd.te Fix avc denied for vendor silent logging app 2022-02-25 05:35:06 +00:00
domain.te sched: move sysfs to procfs 2022-03-24 17:44:37 +00:00
dumpstate.te enforce debugfs constraint on userdebug build 2022-03-24 01:05:18 +00:00
e2fs.te Allow sysfs_devices_block to f2fs-tools 2022-05-25 15:32:56 +00:00
euiccpixel_app.te Add selinux permissions to r/w sysfs st33spi_state 2022-04-11 21:00:50 +00:00
fastbootd.te dck: allow st54spi devivce to be accessed by recovery and fastbootd 2022-09-08 21:58:52 +00:00
file.te Give permissions to save usf stats and dump them in bugreports. am: feba667c23 am: 272b649cee 2022-08-25 04:06:33 +00:00
file_contexts remove global access to firmware mali 2022-09-12 12:58:29 +08:00
fingerprint_factory_service.te sepolicy: Add SW35 HIDL factory service into sepolicy 2022-05-27 01:29:31 +00:00
fsck.te Allow sysfs_devices_block to f2fs-tools 2022-05-25 15:32:56 +00:00
genfs_contexts Label GPU dvfs period setting am: b5fcd3b4db am: d28c59ec92 am: 33c574db0c 2022-08-11 00:33:24 +00:00
google_camera_app.te Add network permissions for google camera 2022-06-17 18:59:12 +00:00
grilservice_app.te Add permission for binding rild and grilservice 2021-12-15 01:42:46 +00:00
gxp_logging.te Add SEPolicy settings for android logging/tracing service for GXP 2022-05-19 03:31:32 +00:00
hal_bootctl_default.te review recovery related operations 2021-08-30 14:45:29 +08:00
hal_camera_default.te Add dontaudit statements to camera HAL policy. 2022-06-10 20:19:12 +00:00
hal_contexthub.te review chre 2021-08-30 14:02:30 +08:00
hal_dumpstate_default.te Give permissions to save usf stats and dump them in bugreports. am: feba667c23 am: 272b649cee 2022-08-25 04:06:33 +00:00
hal_fingerprint_default.te Allow hal_fingerprint_default to access hal_pixel_display_service 2022-05-05 02:03:43 +00:00
hal_graphics_allocator_default.te Give gralloc access to the faceauth_heap_device. 2022-02-24 05:20:30 +00:00
hal_graphics_composer_default.te Add SE policies for HWC logs 2022-07-26 08:25:42 +00:00
hal_health_default.te health: Grant sysfs_thermal access to health 2022-03-23 05:30:33 +00:00
hal_health_storage_default.te Fix selinux for vold idle-maint 2021-11-23 03:24:56 +00:00
hal_input_processor_default.te Allow InputProcessor HAL to read display resolution 2022-06-17 20:31:42 +00:00
hal_memtrack_default.te Add SE policies for memtrack HAL 2022-05-31 23:25:27 +00:00
hal_nfc_default.te gs-sepolicy(uwb): Changes for new UCI stack 2022-03-14 16:09:02 +00:00
hal_power_default.te Pixel-EM-DriverV2: sepolicy: allows Power HAL to 2022-05-31 20:38:29 +00:00
hal_power_stats_default.te ODPM: Add ODPM config file to be read by powerstats 2.0 2022-04-08 02:49:40 +00:00
hal_radioext_default.te Give RadioExt permission to write to sysfs node 2022-04-28 16:58:34 +08:00
hal_secure_element_gto.te refactor hal_secure_element 2021-09-03 15:26:38 +08:00
hal_secure_element_gto_ese2.te refactor hal_secure_element 2021-09-03 15:26:38 +08:00
hal_secure_element_st33spi.te Fix SELinux error coming from hal_secure_element_gto and gto_ese2 2021-11-22 02:59:34 +00:00
hal_secure_element_st54spi.te Fix SELinux error coming from hal_secure_element_gto and gto_ese2 2021-11-22 02:59:34 +00:00
hal_secure_element_uicc.te Fix SELinux error coming from hal_secure_element_uicc 2021-12-02 06:17:22 +00:00
hal_sensors_default.te Give permissions to save usf stats and dump them in bugreports. 2022-08-25 02:47:58 +00:00
hal_thermal_default.te Allow hal_thermal_default to read iio/odpm sysfs nodes 2022-04-26 21:24:30 +00:00
hal_usb_gadget_impl.te Allow gadget hal to search i2c dir and write to usb_limit_accessory_enable 2022-05-23 23:59:44 +00:00
hal_usb_impl.te android.hardware.usb.IUsb AIDL migration 2022-03-01 03:32:23 +00:00
hal_uwb_vendor.te gs-sepolicy(uwb): Allow uwb hal permission to net_admin 2022-03-14 16:09:02 +00:00
hal_uwb_vendor_default.te gs-sepolicy(uwb): Changes for new UCI stack 2022-03-14 16:09:02 +00:00
hal_wifi_ext.te Wifi: Add sepolicy files for hal_wifi_ext service 2021-11-15 05:25:50 +00:00
hal_wlc.te sepolicy: Remove tracking denials files and fix avc problems 2021-11-26 09:11:19 +00:00
hbmsvmanager_app.te Add coredomain for hbmsvmanager 2022-08-23 01:39:53 +00:00
hwservice.te review hw service settings 2021-10-14 04:01:42 +00:00
hwservice_contexts review hw service settings 2021-10-14 04:01:42 +00:00
hwservicemanager.te review hw service settings 2021-10-14 04:01:42 +00:00
incident.te incident: Fix avc errors 2022-03-09 04:55:08 +00:00
init-display-sh.te use gs-common insert module script 2022-09-06 12:41:01 +08:00
init.te init: change overlayfs_file rule to dontaudit 2022-03-07 21:39:11 +00:00
init_radio.te review init.radio.sh 2021-09-06 10:59:10 +08:00
insmod-sh.te use gs-common insert module script 2022-09-06 12:41:01 +08:00
installd.te remove untraceable rules 2021-09-13 14:59:16 +08:00
kernel.te sepolicy: ignore avc denial 2022-09-01 02:38:26 +00:00
keys.conf Use google_camera_app label for GCA-Next fishfood app. 2022-05-13 05:31:34 +00:00
logd.te Really allow logd to read the Trusty log 2022-01-27 13:30:28 -08:00
logger_app.te sched: move sysfs to procfs 2022-03-24 17:44:37 +00:00
mac_permissions.xml Use google_camera_app label for GCA-Next fishfood app. 2022-05-13 05:31:34 +00:00
mediacodec_google.te Allow mediacodec to access vendor_data_file 2022-05-13 09:24:38 +00:00
mediacodec_samsung.te Allow mediacodec to access vendor_data_file 2022-05-13 09:24:38 +00:00
modem_diagnostic_app.te Allow modem diagnostic app to access default prop 2022-03-04 01:35:39 +00:00
modem_logging_control.te review modem_logging_control 2021-08-18 11:21:15 +08:00
modem_svc_sit.te modem_svc_sit: create oem test iodev 2022-06-28 03:16:08 +00:00
nfc.te sched: move sysfs to procfs 2022-03-24 17:44:37 +00:00
oemrilservice_app.te fix sim card related permission 2022-01-21 07:03:02 +00:00
ofl_app.te Fix SELinux error coming from hal_secure_element_gto and gto_ese2 2021-11-22 02:59:34 +00:00
omadm.te review radio app 2021-09-08 11:27:34 +08:00
pixelstats_vendor.te sepolicy: allows pixelstat to access pca file nodes 2022-06-17 02:52:35 +00:00
platform_app.te sched: move sysfs to procfs 2022-03-24 17:44:37 +00:00
property.te use gs-common insert module script 2022-09-06 12:41:01 +08:00
property_contexts use gs-common insert module script 2022-09-06 12:41:01 +08:00
radio.te sched: move sysfs to procfs 2022-03-24 17:44:37 +00:00
ramdump_app.te review ramdump_app 2021-10-06 00:47:41 +00:00
recovery.te dck: allow st54spi devivce to be accessed by recovery and fastbootd 2022-09-08 21:58:52 +00:00
rfsd.te rfsd: fix avc errors 2022-02-16 01:55:31 +00:00
rild.te Fix avc denied for vendor telephony debug app 2022-08-24 01:54:34 +00:00
rlsservice.te allow rlsservice read vendor camera property 2022-06-16 12:02:26 +00:00
sced.te Fix avc denied for vendor silent logging app 2022-02-25 05:35:06 +00:00
seapp_contexts HwInfo: Move hardware info sepolicy to pixel common 2022-08-03 02:57:28 +00:00
service.te Remove vendor_service. 2022-07-26 23:53:54 +00:00
service_contexts gs-policy: Remove obsolete uwb vendor service rules 2022-03-21 09:18:28 -07:00
shell.te pixel-selinux: Port PRO SJTAG policies to tm-dev 2022-03-22 03:17:40 +00:00
ssr_detector.te sched: move sysfs to procfs 2022-03-31 07:00:20 +00:00
surfaceflinger.te make GPU mali firmware accessible 2022-01-17 02:11:39 +00:00
system_app.te Add P22 reverse wireless charging selinux policy 2022-05-13 09:28:03 +00:00
system_server.te Sepolicy: Pixel stats orientationCollector sepolicy 2022-04-14 02:01:13 +00:00
tcpdump_logger.te review tcpdump_logger 2021-09-30 14:40:10 +08:00
te_macros review graphics related sepolicy 2021-09-16 14:07:31 +08:00
tee.te Remove dontaudit rules related to storageproxyd's /data access. 2022-07-07 18:37:23 +00:00
toolbox.te Fix zram avc denied 2021-11-17 06:26:34 +00:00
trusty_apploader.te review trusty domains 2021-10-08 10:48:04 +08:00
trusty_metricsd.te review trusty domains 2021-10-08 10:48:04 +08:00
untrusted_app_all.te sched: move sysfs to procfs 2022-03-24 17:44:37 +00:00
update_engine.te review mount and block devices 2021-09-02 12:49:38 +08:00
uwb_vendor_app.te gs-policy: Remove obsolete uwb vendor service rules 2022-03-21 09:18:28 -07:00
vcd.te Fix modem related avc errors 2021-11-23 12:17:51 +00:00
vendor_engineermode_app.te Fix avc denied for slsi engineermode app 2022-03-03 01:01:08 +00:00
vendor_ims_app.te Add permission to access vendor.ims property to vendor ims app 2022-04-01 01:19:26 +00:00
vendor_ims_remote_app.te refactor ims app 2021-09-06 11:24:37 +08:00
vendor_init.te Allow vendor_init to set camera properties am: c09b0f9873 2022-07-22 01:45:56 +00:00
vendor_qualifiednetworks_app.te Fix SELinux error in vendor_qualifiednetworks_app. 2021-11-30 01:55:08 +00:00
vendor_rcs_app.te sepolicy: add net_domain macro for vendor_rcs_app 2022-06-10 14:39:59 +00:00
vendor_rcs_service_app.te Fix SELinux errors for vendor_rcs_service_app 2022-01-10 11:22:15 +08:00
vendor_shell.te review vendor_battery_profile_prop 2021-09-22 10:21:27 +08:00
vendor_silentlogging_remote_app.te Fix avc denied for vendor silent logging app 2022-02-25 05:35:06 +00:00
vendor_telephony_debug_app.te Fix avc denied for vendor telephony debug app 2022-08-24 01:54:34 +00:00
vendor_telephony_network_test_app.te label telephony apps 2021-12-06 11:27:22 +08:00
vendor_telephony_silentlogging_app.te Fix avc denied for vendor silent logging app 2022-02-25 05:35:06 +00:00
vendor_telephony_test_app.te label telephony apps 2021-12-06 11:27:22 +08:00
vendor_telephony_uartswitch_app.te label telephony apps 2021-12-06 11:27:22 +08:00
vendor_uwb_init.te fix UWB app settings and zygote library access 2021-11-18 02:20:49 +00:00
vndservice.te Move dauntless settings to gs-common 2022-08-30 13:30:00 +08:00
vndservice_contexts dispatch service related error 2021-10-14 10:50:12 +08:00
vold.te fix vold selinux error 2021-12-02 06:29:49 +00:00
wifi_sniffer.te wifi_sniffer: Add policy to allow wifi sniffer to access wifi firmware 2022-07-07 06:15:48 +00:00