Merge "Supress kernel avc log before SELinux initialized" into udc-d1-dev

This commit is contained in:
Treehugger Robot 2023-06-21 09:59:33 +00:00 committed by Android (Google) Code Review
commit d8b11ef832
3 changed files with 5 additions and 5 deletions

View file

@ -1 +0,0 @@
vendor_init device_config_configuration_prop property_service b/267843409

View file

@ -6,10 +6,6 @@ incidentd debugfs_wakeup_sources file b/288049561
incidentd incidentd anon_inode b/288049561 incidentd incidentd anon_inode b/288049561
insmod-sh insmod-sh key b/274374722 insmod-sh insmod-sh key b/274374722
insmod-sh vendor_regmap_debugfs dir b/274727542 insmod-sh vendor_regmap_debugfs dir b/274727542
kernel sepolicy_file file b/288049229
kernel system_bootstrap_lib_file dir b/288049229
kernel system_bootstrap_lib_file file b/288049349
kernel system_dlkm_file dir b/288049229
kernel vendor_fw_file dir b/288049349 kernel vendor_fw_file dir b/288049349
mtectrl unlabeled dir b/264483752 mtectrl unlabeled dir b/264483752
systemui_app wm_trace_data_file dir b/288049075 systemui_app wm_trace_data_file dir b/288049075

5
vendor/kernel.te vendored
View file

@ -13,4 +13,9 @@ no_debugfs_restriction(`
') ')
dontaudit kernel vendor_maxfg_debugfs:dir search; dontaudit kernel vendor_maxfg_debugfs:dir search;
dontaudit kernel sepolicy_file:file getattr;
dontaudit kernel system_bootstrap_lib_file:dir getattr;
dontaudit kernel system_bootstrap_lib_file:file getattr;
dontaudit kernel system_dlkm_file:dir getattr;
allow kernel vendor_regmap_debugfs:dir search; allow kernel vendor_regmap_debugfs:dir search;