Merge "Add recovery related policy" into udc-d1-dev

This commit is contained in:
Wilson Sung 2023-04-12 01:44:17 +00:00 committed by Android (Google) Code Review
commit 5bee37db26
6 changed files with 13 additions and 7 deletions

View file

@ -1,4 +1,3 @@
type sda_block_device, dev_type;
type sg_device, dev_type; type sg_device, dev_type;
type vendor_toe_device, dev_type; type vendor_toe_device, dev_type;
type lwis_device, dev_type; type lwis_device, dev_type;
@ -6,4 +5,3 @@ type rls_device, dev_type;
# Raw HID device # Raw HID device
type hidraw_device, dev_type; type hidraw_device, dev_type;

View file

@ -34,7 +34,6 @@
/dev/st21nfc u:object_r:nfc_device:s0 /dev/st21nfc u:object_r:nfc_device:s0
/dev/sys/block/bootdevice(/.*)? u:object_r:bootdevice_sysdev:s0 /dev/sys/block/bootdevice(/.*)? u:object_r:bootdevice_sysdev:s0
/dev/socket/chre u:object_r:chre_socket:s0 /dev/socket/chre u:object_r:chre_socket:s0
/dev/block/sda u:object_r:sda_block_device:s0
# Data # Data
/data/vendor/ss(/.*)? u:object_r:tee_data_file:s0 /data/vendor/ss(/.*)? u:object_r:tee_data_file:s0

View file

@ -1,4 +0,0 @@
# b/264490092
userdebug_or_eng(`
permissive recovery;
')

3
vendor/device.te vendored
View file

@ -16,3 +16,6 @@ type video_secure_heap_device, dmabuf_heap_device_type, dev_type;
# SecureElement SPI device # SecureElement SPI device
type st54spi_device, dev_type; type st54spi_device, dev_type;
# OTA
type sda_block_device, dev_type;

View file

@ -44,6 +44,7 @@
# Devices # Devices
/dev/bbd_pwrstat u:object_r:power_stats_device:s0 /dev/bbd_pwrstat u:object_r:power_stats_device:s0
/dev/edgetpu-soc u:object_r:edgetpu_device:s0 /dev/edgetpu-soc u:object_r:edgetpu_device:s0
/dev/block/sda u:object_r:sda_block_device:s0
/dev/block/platform/13200000\.ufs/by-name/persist u:object_r:persist_block_device:s0 /dev/block/platform/13200000\.ufs/by-name/persist u:object_r:persist_block_device:s0
/dev/block/platform/13200000\.ufs/by-name/efs u:object_r:efs_block_device:s0 /dev/block/platform/13200000\.ufs/by-name/efs u:object_r:efs_block_device:s0
/dev/block/platform/13200000\.ufs/by-name/efs_backup u:object_r:efs_block_device:s0 /dev/block/platform/13200000\.ufs/by-name/efs_backup u:object_r:efs_block_device:s0

9
vendor/recovery.te vendored Normal file
View file

@ -0,0 +1,9 @@
recovery_only(`
allow recovery sysfs_ota:file rw_file_perms;
allow recovery citadel_device:chr_file rw_file_perms;
allow recovery st54spi_device:chr_file rw_file_perms;
allow recovery tee_device:chr_file rw_file_perms;
allow recovery sysfs_scsi_devices_0000:file r_file_perms;
allow recovery sysfs_scsi_devices_0000:dir r_dir_perms;
set_prop(recovery, boottime_prop)
')