From cc516c150a586011f1d85e99ba8a3e0cbf486fc7 Mon Sep 17 00:00:00 2001 From: Adam Shih Date: Mon, 21 Nov 2022 15:05:49 +0800 Subject: [PATCH] review proc_vendor_sched Bug: 254378739 Test: boot with no relevant error Change-Id: If7d7334896f544c7d91b123513ebe437a35373ad --- legacy/private/permissioncontroller_app.te | 2 -- legacy/whitechapel_pro/bluetooth.te | 5 +---- legacy/whitechapel_pro/hbmsvmanager_app.te | 3 --- legacy/whitechapel_pro/nfc.te | 2 -- legacy/whitechapel_pro/platform_app.te | 2 -- legacy/whitechapel_pro/radio.te | 2 -- legacy/whitechapel_pro/untrusted_app_all.te | 1 - {legacy/whitechapel_pro => vendor}/domain.te | 0 8 files changed, 1 insertion(+), 16 deletions(-) delete mode 100644 legacy/private/permissioncontroller_app.te delete mode 100644 legacy/whitechapel_pro/nfc.te delete mode 100644 legacy/whitechapel_pro/radio.te delete mode 100644 legacy/whitechapel_pro/untrusted_app_all.te rename {legacy/whitechapel_pro => vendor}/domain.te (100%) diff --git a/legacy/private/permissioncontroller_app.te b/legacy/private/permissioncontroller_app.te deleted file mode 100644 index c5feec95..00000000 --- a/legacy/private/permissioncontroller_app.te +++ /dev/null @@ -1,2 +0,0 @@ -allow permissioncontroller_app proc_vendor_sched:dir r_dir_perms; -allow permissioncontroller_app proc_vendor_sched:file w_file_perms; diff --git a/legacy/whitechapel_pro/bluetooth.te b/legacy/whitechapel_pro/bluetooth.te index 3795e299..47b18f4c 100644 --- a/legacy/whitechapel_pro/bluetooth.te +++ b/legacy/whitechapel_pro/bluetooth.te @@ -1,5 +1,2 @@ -allow bluetooth proc_vendor_sched:dir r_dir_perms; -allow bluetooth proc_vendor_sched:file w_file_perms; - allow hal_bluetooth_btlinux aoc_device:chr_file { getattr open read write }; -allow hal_bluetooth_btlinux device:dir r_dir_perms; \ No newline at end of file +allow hal_bluetooth_btlinux device:dir r_dir_perms; diff --git a/legacy/whitechapel_pro/hbmsvmanager_app.te b/legacy/whitechapel_pro/hbmsvmanager_app.te index 3ed4f823..265bde7a 100644 --- a/legacy/whitechapel_pro/hbmsvmanager_app.te +++ b/legacy/whitechapel_pro/hbmsvmanager_app.te @@ -2,9 +2,6 @@ type hbmsvmanager_app, domain; app_domain(hbmsvmanager_app); -allow hbmsvmanager_app proc_vendor_sched:dir r_dir_perms; -allow hbmsvmanager_app proc_vendor_sched:file w_file_perms; - allow hbmsvmanager_app hal_pixel_display_service:service_manager find; binder_call(hbmsvmanager_app, hal_graphics_composer_default) diff --git a/legacy/whitechapel_pro/nfc.te b/legacy/whitechapel_pro/nfc.te deleted file mode 100644 index 80784434..00000000 --- a/legacy/whitechapel_pro/nfc.te +++ /dev/null @@ -1,2 +0,0 @@ -allow nfc proc_vendor_sched:dir r_dir_perms; -allow nfc proc_vendor_sched:file w_file_perms; diff --git a/legacy/whitechapel_pro/platform_app.te b/legacy/whitechapel_pro/platform_app.te index 356167ab..079846ad 100644 --- a/legacy/whitechapel_pro/platform_app.te +++ b/legacy/whitechapel_pro/platform_app.te @@ -1,8 +1,6 @@ allow platform_app hal_pixel_display_service:service_manager find; allow platform_app hal_wlc_hwservice:hwservice_manager find; allow platform_app nfc_service:service_manager find; -allow platform_app proc_vendor_sched:dir r_dir_perms; -allow platform_app proc_vendor_sched:file w_file_perms; # Fingerprint (UDFPS) GHBM/LHBM toggle get_prop(platform_app, fingerprint_ghbm_prop) diff --git a/legacy/whitechapel_pro/radio.te b/legacy/whitechapel_pro/radio.te deleted file mode 100644 index 8cb144d9..00000000 --- a/legacy/whitechapel_pro/radio.te +++ /dev/null @@ -1,2 +0,0 @@ -allow radio proc_vendor_sched:dir r_dir_perms; -allow radio proc_vendor_sched:file w_file_perms; \ No newline at end of file diff --git a/legacy/whitechapel_pro/untrusted_app_all.te b/legacy/whitechapel_pro/untrusted_app_all.te deleted file mode 100644 index ec95276c..00000000 --- a/legacy/whitechapel_pro/untrusted_app_all.te +++ /dev/null @@ -1 +0,0 @@ -dontaudit untrusted_app_all proc_vendor_sched:dir search; diff --git a/legacy/whitechapel_pro/domain.te b/vendor/domain.te similarity index 100% rename from legacy/whitechapel_pro/domain.te rename to vendor/domain.te