Safayat Ullah
7ce9680b98
hal_graphics_composer_default: fix sepolicy denials
...
Bug: 263184738
Bug: 264489746
Test: There is no AVC denied log after reboot
Change-Id: I3c5bbc55f0a676d8906ec061e3c999995d02dd3f
2023-02-01 14:34:36 +00:00
Doug Zobel
7ea927f332
Add sepolicy for PCIe link statistics
...
PCIe link statistics collected by dumpstate and pixelstats.
Test: adb logcat "pixelstats-vendor:D *:S"
Bug: 266689144
Change-Id: I9b7eef9a9e14c1be9e9e9feb3c608f7067e6fade
Signed-off-by: Doug Zobel <zobel@google.com>
2023-02-01 07:23:15 -06:00
Donnie Pollitz
eea50ca2bc
Merge "sepolicy: Fix tee avc denials"
2023-02-01 09:46:16 +00:00
Welly Hsu
74b12d8455
Remove dontaudit in euiccpixel for SELinuxUncheckedDenialBootTest and scanAvcDeniedLogRightAfterReboot
...
Issue: after introducing selinux rules in b/265286368
the dontaudit rules can be removed
bug: 260522413
bug: 262451641
bug: 261651113
bug: 260922186
bug: 261516808
bug: 260769064
bug: 265384119
bug: 264489745
Test: confirm SELinuxUncheckedDenialBootTest and
scanAvcDeniedLogRightAfterReboot tests can pass and no avc denials for euiccpixel
Change-Id: I07ae97d47bbb14c15da92611160b6a2a6af22a60
2023-02-01 16:34:17 +08:00
Long Ling
9f67cbb03b
Merge "Set context for sysfs file refresh_rate"
2023-02-01 02:37:48 +00:00
Sajid Dalvi
c649651b04
Merge "init: add dumpstate for pcie"
2023-01-31 19:53:26 +00:00
Nicole Lee
9c413c12e7
logger_app: allow logger_app to access vendor_slog_file
...
Bug: 264489961
Test: Confirm no selinux denial for vendor_slog_file
Change-Id: Idc5386336a196f39703f6d33e3a7a8491e860ea0
2023-01-31 16:38:48 +00:00
Nicole Lee
98e068e135
logger_app: allow logger_app to access vendor_rild_prop
...
Bug: 264489961
Test: Confirm no selinux denial for vendor_rild_prop
Change-Id: I07bb59cba17f11a6cfdaf40e92f6cd663d8ad903
2023-01-31 16:38:39 +00:00
Nicole Lee
e396b80465
logger_app: allow logger_app to access sysfs_sscoredump_level and vendor_ramdump_prop
...
Bug: 264489961
Test: Confirm no selinux denial for sysfs_sscoredump_level and vendor_ramdump_prop
Change-Id: I6c7e87d15505dd9cd80f571ab67925b7ec722ef6
2023-01-31 16:38:31 +00:00
Nicole Lee
cbb6754e58
logger_app: allow logger_app to access logd_prop
...
Bug: 264489961
Test: Confirm no selinux denial for logd_prop
Change-Id: I6db7b19dd9cf864768ba2442d39d9fcde16a71fe
2023-01-31 16:38:23 +00:00
Nicole Lee
bed125ec04
logger_app: allow logger_app to access logpersistd_logging_prop
...
Bug: 264489961
Test: Confirm no selinux denial for logpersistd_logging_prop
Change-Id: Ia8836e058bb3e471d388f9055252e6c3c42227ac
2023-01-31 16:38:14 +00:00
Nicole Lee
998e7618b9
logger_app: allow logger_app to access vendor_audio_prop
...
Bug: 264489961
Test: Confirm no selinux denial for vendor_audio_prop
Change-Id: I02b53cf4d39adf1bc69004502a21b130c925d6bc
2023-01-31 16:38:05 +00:00
Nicole Lee
64a8ed9b7b
logger_app: allow logger_app to access vendor_wifi_sniffer_prop
...
Bug: 264489961
Test: Confirm no selinux denial for vendor_wifi_sniffer_prop
Change-Id: Id6a5afed299c3ac869897015629d190640f40d8f
2023-01-31 16:37:54 +00:00
Nicole Lee
eb05f7d02f
logger_app: allow logger_app to access vendor_tcpdump_log_prop
...
Bug: 264489961
Test: Confirm no selinux denial for vendor_tcpdump_log_prop
Change-Id: I2c4e7e0d395f570f93a26dd0328982487426ac84
2023-01-31 16:36:24 +00:00
Nicole Lee
cddb6ad619
logger_app: allow access vendor_gps_file, vendor_gps_prop, vendor_logger_prop
...
Bug: 261519049
Bug: 261783031
Bug: 261933367
Test: Confirm no selinux denial for these 3 tcontexts
Change-Id: I6f919e193693f7521778321f677214ea9f3b4d84
2023-01-31 16:32:41 +00:00
Nicole Lee
b713236048
logger_app: allow logger_app access vendor_modem_prop
...
Bug: 260522268
Bug: 264600053
Test: Confirm no selinux denial for tcontext vendor_modem_prop
Change-Id: Ic4ed0cdd7fa33c1dd4c812528b26b4a19cf6537b
2023-01-31 16:32:32 +00:00
Nicole Lee
e6975cb6e5
logger_app: allow logger_app to access vendor_ssrdump_prop
...
Bug: 260366439
Test: Confirm no selinux denial for tcontext vendor_ssrdump_prop
Change-Id: I74009bdd3d8b0fa691a2d0132655dc08fcd50977
2023-01-31 16:32:24 +00:00
Nicole Lee
30e96b25ce
logger_app: allow logger_app to access radio files
...
Bug: 260366439
Bug: 260522268
Bug: 260769144
Bug: 261519049
Bug: 264600084
Test: Confirm no selinux denial for tcontext radio_vendor_data_file
Change-Id: I2a917d78e685aad5608e64f4d076cc50cdb064cc
2023-01-31 16:32:16 +00:00
timtmlin
6af1a74ac0
support RIL extension service using IRilExt
...
Bug: 258184594
Test: make
Change-Id: I84b4d98e6f8874689ea84acff1b55e7c73ff9972
2023-01-31 15:14:15 +00:00
sukiliu
383189e5f2
Update error on ROM 9541712
...
Bug: 267260951
Bug: 267261048
Bug: 267260619
Bug: 267260716
Bug: 267261305
Bug: 267261163
Bug: 267260675
Bug: 267261265
Bug: 267260717
Test: scanBugreport
Change-Id: I293fe1bc19f5f2d8f320d4e9feea051fc623ef8d
2023-01-31 14:18:11 +08:00
Joseph Jang
245e4205d1
citadel: Remove citadel.te for sepolicy testing
...
Test: VtsHalWeaverTargetTest
VtsAidlSharedSecretTargetTest
VtsHalIdentityTargetTest
VtsHalRemotelyProvisionedComponentTargetTest
VtsAidlKeyMintTargetTest
Bug: 264489777
Change-Id: I787aef6a0a924706ba2afccefff770408bb78294
2023-01-31 05:21:49 +00:00
Dai Li
7914cd2f1a
Merge "Blow AR upon boot success in zuma"
2023-01-30 22:16:21 +00:00
Long Ling
ab6c98702b
Set context for sysfs file refresh_rate
...
Bug: 263821118
Change-Id: Id8865c4499b6af103a7acd1fbbe6da0724cb83b3
2023-01-26 18:51:53 -08:00
TreeHugger Robot
1746a6cc59
Merge "Add rule for secure_element AIDL"
2023-01-27 02:00:45 +00:00
Florian Mayer
63a58603a2
Remove MTE user toggle from Zuma.
...
Change-Id: If62af28429b20cb38288ad86f452acf250088c19
2023-01-27 01:06:32 +00:00
Peter Collingbourne
0035373279
Merge "Temporarily disable KASAN until bugfix is merged into Shusky kernel."
2023-01-26 03:41:03 +00:00
Peter Collingbourne
3174340456
Temporarily disable KASAN until bugfix is merged into Shusky kernel.
...
Bug: 265863271
Change-Id: Ifdc9f910767406c4c37600a0b14f502e90bab0aa
2023-01-25 16:59:53 -08:00
Dai Li
35b3e91c75
Blow AR upon boot success in zuma
...
With otp driver migrated to trusty in zuma, use tipc to blow AR in
Android.
Bug: 232277507
Change-Id: I6908502244e96bf86f026596a395419eb3b9b877
2023-01-25 20:44:53 +00:00
Doug Zobel
ecb02c9cc0
pixelstats: Configure PCIe link stats pathnames and access
...
Test: adb logcat "pixelstats-vendor:D *:S"
Bug: 266689144
Change-Id: Ie528c3273e43e0a3401449a057eeb9c7e6004ecf
Signed-off-by: Doug Zobel <zobel@google.com>
2023-01-25 09:57:06 -06:00
Sajid Dalvi
9d79164804
init: add dumpstate for pcie
...
Add logbuffer support to pcie driver to reduce dmesg spam.
Bug: 228870318
Change-Id: I714110a83bd04972db1017fae7dd08ea61b7a31c
Signed-off-by: Sajid Dalvi <sdalvi@google.com>
2023-01-24 18:56:37 -06:00
Donnie Pollitz
34fe057526
sepolicy: Fix tee avc denials
...
tee policies were missing
Bug: 263304957
Bug: 263429986
Bug: 264489524
Test: boot and scanAvcDeniedLogRightAfterReboot passed
Change-Id: Ia3191496be005dbbbe331a14f7d45adace34b3fc
Signed-off-by: Donnie Pollitz <donpollitz@google.com>
2023-01-24 15:22:57 +01:00
Grace Chen
82ae431064
Merge "Fix selinux denials on hal_secure_element_uicc"
2023-01-24 02:10:51 +00:00
Mahesh Sivasubramanian
5cb0ef1f4a
zuma: Enable SICD after boot
...
Bug: 238226940
Change-Id: I43a00d12d97a8c5f86e6163c0fcf0160f9b5791f
Signed-off-by: Mahesh Sivasubramanian <msivasub@google.com>
2023-01-24 00:22:07 +00:00
Grace Chen
e881d9d401
Fix selinux denials on hal_secure_element_uicc
...
Bug: 264489780
Test: Confirm no more selinux denials
Change-Id: Ib159acaf8701d0ac7e3325addd7baca6a41f0cee
2023-01-23 15:36:04 -08:00
Grace Chen
c93ba80fc4
Add rule for secure_element AIDL
...
Add secureelement aidl
b/261565407
Change-Id: I79f35e8231d9eae81b90528269410c169bb1a035
2023-01-23 18:46:01 +00:00
TreeHugger Robot
7f59f49e22
Merge changes I9465cf81,Ic7c048e1
...
* changes:
Set pKVM to enabled in /misc on A0 chips
Set pKVM metrics tag
2023-01-23 17:57:00 +00:00
David Brazdil
f347cd224d
Set pKVM to enabled in /misc on A0 chips
...
pKVM provides a workaround for A0 hardware issue. Signal to tests that
an A0 device should not be run without it by enabling it in /misc on
first boot. We only do this on debug builds.
Bug: 266183966
Test: flash, boot, reboot to bootloader, check 'fastboot oem pkvm'
Change-Id: I9465cf816c65943cba6e04b1d939b0bb5af4395d
2023-01-23 14:48:26 +00:00
David Brazdil
3900802833
Set pKVM metrics tag
...
Performance of pKVM differs between hardware revisions. Set AVF's debug
property on A0 chips to separate benchmark results from each other.
Bug: 266183966
Test: getprop | grep 'debug.hypervisor.metrics_tag'
Change-Id: Ic7c048e1209bf957cef2373b92dc2e9de2733a9c
2023-01-23 12:55:43 +00:00
Victor Barr
e0ed3112e2
Merge "Support DBA HAL"
2023-01-19 21:52:38 +00:00
Wen Chang Liu
5855555c19
Merge "BoardConfig: add BOARD_SUPPORT_FLEXIBLE_P010 support"
2023-01-18 15:30:11 +00:00
Dinesh Yadav
3de9d17052
Merge "Allow camera HAL and GCA to access GXP device."
2023-01-18 07:33:32 +00:00
TreeHugger Robot
4c74d95ac6
Merge "thermal: remove thermal pid flag for zuma"
2023-01-18 00:14:00 +00:00
TreeHugger Robot
30fe55378d
Merge "Fix avc denied and remove tracking_denials for hal_usb_gadget_impl"
2023-01-17 06:07:41 +00:00
Ernie Hsu
87aa440b72
Merge "Remove tracking_denials for media related module"
2023-01-17 05:51:00 +00:00
Chung-Kai (Michael) Mei
ee6c28322a
Merge "sepolicy: fix avc denial"
2023-01-17 04:53:35 +00:00
Chungkai Mei
cc0f6a604d
sepolicy: fix avc denial
...
fix avc denial
Test: boot passed and no avc log after boot
Bug: 264483355
Change-Id: Idd9ef9ca7c988141bffd2d9d7e561efe8066cba4
Signed-off-by: Chungkai Mei <chungkai@google.com>
2023-01-17 04:53:13 +00:00
Ray Chi
6baa4fa226
Fix avc denied and remove tracking_denials for hal_usb_gadget_impl
...
Bug: 264946043
Test: no avc denied for hal_usb_gadget_impl
Change-Id: Ib52e6d089a0e3e73c619f35849af0aed478c1f65
2023-01-17 04:37:49 +00:00
Ernie Hsu
c2a4092ee6
Remove tracking_denials for media related module
...
All bugs in modified te files were already fixed
Bug: 264490072
Bug: 264489679
Bug: 264490012
Bug: 264489523
Test: test video recording/playback under enforcing mode
Change-Id: Iac7dc597f58dcc5f7bd936ddb607aa7158467a34
2023-01-17 03:45:37 +00:00
Dinesh Yadav
b068bb3f64
Allow camera HAL and GCA to access GXP device.
...
The camera HAL and Google Camera App
need selinux permission to run workloads on Aurora DSP. This
change adds the selinux rules too allow these clients to
access the GXP device in order to execute workloads on DSP.
Bug: 264321380
Test: Verified that the camera HAL service and GCA app is able to access the GXP device.
Change-Id: I125650b4841b4cbdc50077a0d80b113b02699de8
2023-01-17 03:21:04 +00:00
TreeHugger Robot
ef4c754dc4
Merge "Fix avc denied and remove tracking_denials for hal_usb_impl"
2023-01-16 09:55:32 +00:00