sepolicy: Fix trusty_metricsd avc denials

* Suez data collection missing

Bug: 264489526
Test: ran com.google.android.selinux.pts.SELinuxTest#scanAvcDeniedLogRightAfterReboot
Change-Id: I667e35c68139a3368655cab4ea40acb529bb65ef
Signed-off-by: Donnie Pollitz <donpollitz@google.com>
This commit is contained in:
Donnie Pollitz 2023-02-03 17:25:56 +01:00
parent 1df4e2dde8
commit 1fd0c782b4
2 changed files with 6 additions and 4 deletions

View file

@ -1,4 +0,0 @@
# b/264489526
userdebug_or_eng(`
permissive trusty_metricsd;
')

View file

@ -3,3 +3,9 @@ type trusty_metricsd_exec, exec_type, vendor_file_type, file_type;
init_daemon_domain(trusty_metricsd)
allow trusty_metricsd tee_device:chr_file rw_file_perms;
# For Suez metrics collection
binder_use(trusty_metricsd)
binder_call(trusty_metricsd, system_server)
allow trusty_metricsd fwk_stats_service:service_manager find;