Device tree for Google Pixel 9a
Find a file
Frank Yu 281f3af6a6 Update sepolicy for radioext AIDL service.
avc logs for each rule:

SELinux : avc:  denied  { find } for pid=1965 uid=10238 name=vendor.google.radio_ext.IRadioExt/default scontext=u:r:grilservice_app:s0:c238,c256,c512,c768 tcontext=u:object_r:default_android_service:s0 tclass=service_manager permissive=0

auditd  : type=1400 audit(0.0:12): avc:  denied  { call } for  comm="oid.grilservice" scontext=u:r:grilservice_app:s0:c238,c256,c512,c768 tcontext=u:r:hal_radio_ext:s0 tclass=binder permissive=0 app=com.google.android.grilservice

Bug: 343576955
Test: Manual. grilservice_app invoke method in radio ext
successfully.
Change-Id: I7cff95231430d78a7e2436b2ba10acf45cd5dbd8

Change-Id: Ide8934503593804fcc141cd87e3eeffc0f5f55e2
2024-05-31 10:36:18 +00:00
tracking_denials Initial SEpolicy tracking_denials 2023-10-25 08:14:57 +00:00
vendor Update sepolicy for radioext AIDL service. 2024-05-31 10:36:18 +00:00
OWNERS Switch makefile owners to MK_OWNERS 2024-05-24 15:54:03 +08:00
README.txt Initialize Tegu 2023-09-14 22:59:43 +08:00
tegu-sepolicy.mk Add tegu vendor folder 2023-12-06 06:31:02 +00:00

This folder holds sepolicy exclusively for one device. For example, genfs_contexts
paths that are affected by device tree.