Commit graph

5656 commits

Author SHA1 Message Date
Nicole Lee
e6975cb6e5 logger_app: allow logger_app to access vendor_ssrdump_prop
Bug: 260366439

Test: Confirm no selinux denial for tcontext vendor_ssrdump_prop
Change-Id: I74009bdd3d8b0fa691a2d0132655dc08fcd50977
2023-01-31 16:32:24 +00:00
Nicole Lee
30e96b25ce logger_app: allow logger_app to access radio files
Bug: 260366439
Bug: 260522268
Bug: 260769144
Bug: 261519049
Bug: 264600084

Test: Confirm no selinux denial for tcontext radio_vendor_data_file
Change-Id: I2a917d78e685aad5608e64f4d076cc50cdb064cc
2023-01-31 16:32:16 +00:00
timtmlin
6af1a74ac0 support RIL extension service using IRilExt
Bug: 258184594
Test: make
Change-Id: I84b4d98e6f8874689ea84acff1b55e7c73ff9972
2023-01-31 15:14:15 +00:00
sukiliu
383189e5f2 Update error on ROM 9541712
Bug: 267260951
Bug: 267261048
Bug: 267260619
Bug: 267260716
Bug: 267261305
Bug: 267261163
Bug: 267260675
Bug: 267261265
Bug: 267260717
Test: scanBugreport
Change-Id: I293fe1bc19f5f2d8f320d4e9feea051fc623ef8d
2023-01-31 14:18:11 +08:00
Joseph Jang
245e4205d1 citadel: Remove citadel.te for sepolicy testing
Test: VtsHalWeaverTargetTest
      VtsAidlSharedSecretTargetTest
      VtsHalIdentityTargetTest
      VtsHalRemotelyProvisionedComponentTargetTest
      VtsAidlKeyMintTargetTest
Bug: 264489777
Change-Id: I787aef6a0a924706ba2afccefff770408bb78294
2023-01-31 05:21:49 +00:00
Dai Li
7914cd2f1a Merge "Blow AR upon boot success in zuma" 2023-01-30 22:16:21 +00:00
Long Ling
ab6c98702b Set context for sysfs file refresh_rate
Bug: 263821118
Change-Id: Id8865c4499b6af103a7acd1fbbe6da0724cb83b3
2023-01-26 18:51:53 -08:00
TreeHugger Robot
1746a6cc59 Merge "Add rule for secure_element AIDL" 2023-01-27 02:00:45 +00:00
Florian Mayer
63a58603a2 Remove MTE user toggle from Zuma.
Change-Id: If62af28429b20cb38288ad86f452acf250088c19
2023-01-27 01:06:32 +00:00
Peter Collingbourne
0035373279 Merge "Temporarily disable KASAN until bugfix is merged into Shusky kernel." 2023-01-26 03:41:03 +00:00
Peter Collingbourne
3174340456 Temporarily disable KASAN until bugfix is merged into Shusky kernel.
Bug: 265863271
Change-Id: Ifdc9f910767406c4c37600a0b14f502e90bab0aa
2023-01-25 16:59:53 -08:00
Dai Li
35b3e91c75 Blow AR upon boot success in zuma
With otp driver migrated to trusty in zuma, use tipc to blow AR in
Android.

Bug: 232277507
Change-Id: I6908502244e96bf86f026596a395419eb3b9b877
2023-01-25 20:44:53 +00:00
Doug Zobel
ecb02c9cc0 pixelstats: Configure PCIe link stats pathnames and access
Test: adb logcat "pixelstats-vendor:D *:S"
Bug: 266689144
Change-Id: Ie528c3273e43e0a3401449a057eeb9c7e6004ecf
Signed-off-by: Doug Zobel <zobel@google.com>
2023-01-25 09:57:06 -06:00
Sajid Dalvi
9d79164804 init: add dumpstate for pcie
Add logbuffer support to pcie driver to reduce dmesg spam.

Bug: 228870318
Change-Id: I714110a83bd04972db1017fae7dd08ea61b7a31c
Signed-off-by: Sajid Dalvi <sdalvi@google.com>
2023-01-24 18:56:37 -06:00
Donnie Pollitz
34fe057526 sepolicy: Fix tee avc denials
tee policies were missing

Bug: 263304957
Bug: 263429986
Bug: 264489524
Test: boot and scanAvcDeniedLogRightAfterReboot passed

Change-Id: Ia3191496be005dbbbe331a14f7d45adace34b3fc
Signed-off-by: Donnie Pollitz <donpollitz@google.com>
2023-01-24 15:22:57 +01:00
Grace Chen
82ae431064 Merge "Fix selinux denials on hal_secure_element_uicc" 2023-01-24 02:10:51 +00:00
Mahesh Sivasubramanian
5cb0ef1f4a zuma: Enable SICD after boot
Bug: 238226940
Change-Id: I43a00d12d97a8c5f86e6163c0fcf0160f9b5791f
Signed-off-by: Mahesh Sivasubramanian <msivasub@google.com>
2023-01-24 00:22:07 +00:00
Grace Chen
e881d9d401 Fix selinux denials on hal_secure_element_uicc
Bug: 264489780
Test: Confirm no more selinux denials
Change-Id: Ib159acaf8701d0ac7e3325addd7baca6a41f0cee
2023-01-23 15:36:04 -08:00
Grace Chen
c93ba80fc4 Add rule for secure_element AIDL
Add secureelement aidl

b/261565407

Change-Id: I79f35e8231d9eae81b90528269410c169bb1a035
2023-01-23 18:46:01 +00:00
TreeHugger Robot
7f59f49e22 Merge changes I9465cf81,Ic7c048e1
* changes:
  Set pKVM to enabled in /misc on A0 chips
  Set pKVM metrics tag
2023-01-23 17:57:00 +00:00
David Brazdil
f347cd224d Set pKVM to enabled in /misc on A0 chips
pKVM provides a workaround for A0 hardware issue. Signal to tests that
an A0 device should not be run without it by enabling it in /misc on
first boot. We only do this on debug builds.

Bug: 266183966
Test: flash, boot, reboot to bootloader, check 'fastboot oem pkvm'
Change-Id: I9465cf816c65943cba6e04b1d939b0bb5af4395d
2023-01-23 14:48:26 +00:00
David Brazdil
3900802833 Set pKVM metrics tag
Performance of pKVM differs between hardware revisions. Set AVF's debug
property on A0 chips to separate benchmark results from each other.

Bug: 266183966
Test: getprop | grep 'debug.hypervisor.metrics_tag'
Change-Id: Ic7c048e1209bf957cef2373b92dc2e9de2733a9c
2023-01-23 12:55:43 +00:00
Victor Barr
e0ed3112e2 Merge "Support DBA HAL" 2023-01-19 21:52:38 +00:00
Wen Chang Liu
5855555c19 Merge "BoardConfig: add BOARD_SUPPORT_FLEXIBLE_P010 support" 2023-01-18 15:30:11 +00:00
Dinesh Yadav
3de9d17052 Merge "Allow camera HAL and GCA to access GXP device." 2023-01-18 07:33:32 +00:00
TreeHugger Robot
4c74d95ac6 Merge "thermal: remove thermal pid flag for zuma" 2023-01-18 00:14:00 +00:00
TreeHugger Robot
30fe55378d Merge "Fix avc denied and remove tracking_denials for hal_usb_gadget_impl" 2023-01-17 06:07:41 +00:00
Ernie Hsu
87aa440b72 Merge "Remove tracking_denials for media related module" 2023-01-17 05:51:00 +00:00
Chung-Kai (Michael) Mei
ee6c28322a Merge "sepolicy: fix avc denial" 2023-01-17 04:53:35 +00:00
Chungkai Mei
cc0f6a604d sepolicy: fix avc denial
fix avc denial

Test: boot passed and no avc log after boot
Bug: 264483355
Change-Id: Idd9ef9ca7c988141bffd2d9d7e561efe8066cba4
Signed-off-by: Chungkai Mei <chungkai@google.com>
2023-01-17 04:53:13 +00:00
Ray Chi
6baa4fa226 Fix avc denied and remove tracking_denials for hal_usb_gadget_impl
Bug: 264946043
Test: no avc denied for hal_usb_gadget_impl
Change-Id: Ib52e6d089a0e3e73c619f35849af0aed478c1f65
2023-01-17 04:37:49 +00:00
Ernie Hsu
c2a4092ee6 Remove tracking_denials for media related module
All bugs in modified te files were already fixed

Bug: 264490072
Bug: 264489679
Bug: 264490012
Bug: 264489523
Test: test video recording/playback under enforcing mode
Change-Id: Iac7dc597f58dcc5f7bd936ddb607aa7158467a34
2023-01-17 03:45:37 +00:00
Dinesh Yadav
b068bb3f64 Allow camera HAL and GCA to access GXP device.
The camera HAL and Google Camera App
need selinux permission to run workloads on Aurora DSP. This
change adds the selinux rules too allow these clients to
access the GXP device in order to execute workloads on DSP.

Bug: 264321380
Test: Verified that the camera HAL service and GCA app is able to access the GXP device.
Change-Id: I125650b4841b4cbdc50077a0d80b113b02699de8
2023-01-17 03:21:04 +00:00
TreeHugger Robot
ef4c754dc4 Merge "Fix avc denied and remove tracking_denials for hal_usb_impl" 2023-01-16 09:55:32 +00:00
Dinesh Yadav
1ac5ca8485 Merge "Add SEPolicy settings for android logging/tracing service for GXP" 2023-01-16 08:05:51 +00:00
Ray Chi
0801e5e421 Fix avc denied and remove tracking_denials for hal_usb_impl
Fix avc denial for hal_usb_impl.

Bug: 263048760
Test: no avc denied for hal_usb_impl
Change-Id: Iaeea9d1f99f715c0f856a3a9f9fcd2e8d371f3d3
2023-01-16 15:40:48 +08:00
Chungkai Mei
171bfb004b sepolicy: fix avc denial
fix avc denial

Test: bott passed and no avc log after boot
Bug: 260769063
Bug: 261105028
Bug: 260366126
Bug: 261650934
Bug: 262178497
Bug: 262315567
Bug: 262633072
Change-Id: I926d535fe6871726b5cd0602e436f6b5a3a9e736
Signed-off-by: Chungkai Mei <chungkai@google.com>
2023-01-16 02:55:37 +00:00
sukiliu
3b97d74811 Update error on ROM 9492984
Bug: 265587172
Test: SELinuxUncheckedDenialBootTest
Change-Id: I69402149121da5bbb0f2f89ca59c3ca458945d50
2023-01-16 09:36:14 +08:00
Ken Yang
aeef4c5f9d WLC: include the wireless FCM correctly
Change the setting of DEVICE_PRODUCT_COMPATIBILITY_MATRIX_FILE from ':='
to '+=' due to that vendor services like WLC will be added before it.

Bug: 265476345
Change-Id: I1b60f69465faad3749f1e54a561d1c20c99b7237
Signed-off-by: Ken Yang <yangken@google.com>
2023-01-14 04:11:19 +00:00
Jaegeuk Kim
34b65b6ab3 Merge "zuma: add no encryption fstab rule" 2023-01-13 16:11:30 +00:00
Ken Yang
c4d610a86b Merge "WLC: Cleanup the sysfs_wlc policies" 2023-01-13 14:41:32 +00:00
TreeHugger Robot
71b801e2b7 Merge "Update error on ROM 9486762" 2023-01-13 09:14:49 +00:00
Welly Hsu
1f350465ce Merge "Fix euiccpixel_app SELinux error for eSIM firmware upgrade" 2023-01-13 07:46:40 +00:00
sukiliu
305330ef84 Update error on ROM 9486762
Bug: 265384119
Bug: 265383359
Bug: 265383532
Test: SELinuxUncheckedDenialBootTest
Change-Id: I78bf39772c8f2a6b5c403ed5b113a34ff7d9dab0
2023-01-13 15:33:02 +08:00
Alex Hong
e040b0838a Merge "Fix the index out of bounds error when the modem FD is missing" 2023-01-13 06:26:41 +00:00
Leo Liou
af6131d348 Merge "zuma: add sepolicy for ufs_firmware_update process" 2023-01-13 03:21:07 +00:00
Leo Liou
905df10502 Merge "conf: run ufs ffu script after boot complete" 2023-01-13 03:21:07 +00:00
Peter (YM)
a6dd6e5d1b thermal: remove thermal pid flag for zuma
Since we are going to remove old pid algo for zuma, don't need to have
version control anymore.

Bug: 247536326
Test: lshal debug android.hardware.thermal@2.0::IThermal/default
Change-Id: I1f6fe94f018c66156f08d66989c833547f8aa3b9
2023-01-13 02:39:24 +00:00
Leo Liou
30f3c17252 zuma: add sepolicy for ufs_firmware_update process
Allow the script to access the specified partition and sysfs.

Bug: 224464892
Test: full build and test ffu flow
Change-Id: I27f0d4d97f15a7c108e6ae1b8c12fda2c69c303a
Signed-off-by: Leo Liou <leoliou@google.com>
2023-01-13 08:19:27 +08:00
Jaegeuk Kim
0cf7210eb1 Allow mkfs/fsck for vendor partitons
Change-Id: I425c56edf9b12f1b86994f58100ecc9a8e1b58b2
Signed-off-by: Jaegeuk Kim <jaegeuk@google.com>
2023-01-12 09:42:16 -08:00