diff --git a/tracking_denials/toolbox.te b/tracking_denials/toolbox.te deleted file mode 100644 index d32f68aa..00000000 --- a/tracking_denials/toolbox.te +++ /dev/null @@ -1,18 +0,0 @@ -# b/260522041 -dontaudit toolbox per_boot_file:dir { getattr }; -dontaudit toolbox per_boot_file:dir { open }; -dontaudit toolbox per_boot_file:dir { read }; -dontaudit toolbox per_boot_file:dir { remove_name }; -dontaudit toolbox per_boot_file:dir { rmdir }; -dontaudit toolbox per_boot_file:dir { search }; -dontaudit toolbox per_boot_file:dir { write }; -dontaudit toolbox per_boot_file:file { getattr }; -dontaudit toolbox per_boot_file:file { unlink }; -dontaudit toolbox ram_device:blk_file { getattr }; -dontaudit toolbox ram_device:blk_file { ioctl }; -dontaudit toolbox ram_device:blk_file { open }; -dontaudit toolbox ram_device:blk_file { read write }; -# b/264490055 -userdebug_or_eng(` - permissive toolbox; -') \ No newline at end of file diff --git a/vendor/toolbox.te b/vendor/toolbox.te new file mode 100644 index 00000000..9fbbb7ab --- /dev/null +++ b/vendor/toolbox.te @@ -0,0 +1,3 @@ +allow toolbox ram_device:blk_file rw_file_perms; +allow toolbox per_boot_file:dir create_dir_perms; +allow toolbox per_boot_file:file create_file_perms;