Suppress avc denials of sysfs [DO NOT MERGE]

Bug: 263548298
Test: TreeHugger build.
Signed-off-by: Mason Wang <masonwang@google.com>
Change-Id: Ic5545995b5dc38e4b5fecd70dabf5bcd6de2368d
This commit is contained in:
Mason Wang 2023-01-03 16:05:31 +08:00
parent 4914414330
commit fcc3c266e6
5 changed files with 6 additions and 2 deletions

View file

@ -1,3 +1,3 @@
# sepolicy that are shared among devices using whitechapel
BOARD_SEPOLICY_DIRS += device/google/pantah-sepolicy/cheetah
BOARD_SEPOLICY_DIRS += device/google/pantah-sepolicy/tracking_denials

View file

@ -1,3 +1,3 @@
# sepolicy that are shared among devices using whitechapel
BOARD_SEPOLICY_DIRS += device/google/pantah-sepolicy/cloudripper
BOARD_SEPOLICY_DIRS += device/google/pantah-sepolicy/tracking_denials

View file

@ -1,2 +1,3 @@
# sepolicy that are shared among devices using whitechapel
BOARD_SEPOLICY_DIRS += device/google/pantah-sepolicy/panther
BOARD_SEPOLICY_DIRS += device/google/pantah-sepolicy/tracking_denials

View file

@ -1,2 +1,3 @@
# sepolicy that are shared among devices using whitechapel
BOARD_SEPOLICY_DIRS += device/google/pantah-sepolicy/ravenclaw
BOARD_SEPOLICY_DIRS += device/google/pantah-sepolicy/tracking_denials

View file

@ -0,0 +1,2 @@
# b/263548298
dontaudit hal_dumpstate_default sysfs:dir { read };