Renato Grottesi
96f1f214a2
Cleanup unused ArmNN settings.
...
Test: pre-submit
Bug: 294463729
Change-Id: Ic417154724c4ddc06925ee2de1bd419dddfa1413
2023-08-17 09:03:35 +00:00
Donnie Pollitz
260cf9cc56
Merge "Allow vendor_init to fix permissions of TEE data file" into udc-d1-dev am: 9fc92bdb28
am: 5bf2864bf3
am: 5a45fb8698
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/zuma-sepolicy/+/23413076
Change-Id: Ib6f835b90e03032e515046545c5ddc41e2674baa
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2023-05-26 09:50:01 +00:00
Donnie Pollitz
16440338de
Allow vendor_init to fix permissions of TEE data file
...
Background:
* vendor_init needs to be able to possibly fix ownership of
tee_data_file
Bug: 280325952
Test: Changed permissions and confirmed user transitions
Change-Id: I2363f9ff695209bbf7b6661c8e9eb3b376b84ace
Signed-off-by: Donnie Pollitz <donpollitz@google.com>
2023-05-24 16:45:28 +02:00
Bruno BELANYI
61df5feff7
Add ArmNN config sysprops SELinux rules
...
Bug: 205202540
Bug: 264489188
Test: manual - reboot device and check the absence of AVC denials
(cherry picked from https://googleplex-android-review.googlesource.com/q/commit:aac79fd4d9bec6517b2932cfca1e1c84b7711cc8 )
Merged-In: I77b29468258520265e5f660452794aff068ca07d
Change-Id: I77b29468258520265e5f660452794aff068ca07d
2023-04-26 08:12:29 +00:00
Bruno BELANYI
aac79fd4d9
Add ArmNN config sysprops SELinux rules
...
Bug: b/205202540
Test: manual - reboot device and check the absence of AVC denials
Change-Id: I77b29468258520265e5f660452794aff068ca07d
2023-04-19 11:32:48 +00:00
Martin Liu
2c2e198e61
allow vendor_init to acces watermark_scale_factor
...
Bug: 278075546
Test: boot
Change-Id: Ib5fc92b4f21ca9b1ff6fdd3a32c97117cc12aac0
Signed-off-by: Martin Liu <liumartin@google.com>
2023-04-16 04:05:34 +00:00
Martin Liu
fe24903d2c
allow vendor_init to acces watermark_scale_factor
...
Bug: 278075546
Test: boot
Change-Id: Ib5fc92b4f21ca9b1ff6fdd3a32c97117cc12aac0
Merged-in: Ib5fc92b4f21ca9b1ff6fdd3a32c97117cc12aac0
Signed-off-by: Martin Liu <liumartin@google.com>
2023-04-16 03:59:57 +00:00
Joerg Wagner
6351914802
Merge "Update Mali DDK to r40 : Additional SELinux settings" into udc-d1-dev
2023-03-21 14:36:16 +00:00
TreeHugger Robot
eccb7ad20b
Merge "allow vendor init to set vendor_camera_prop" into udc-d1-dev am: 1605d7979d
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/zuma-sepolicy/+/22113945
Change-Id: Ibdab8601f0d98e2b11640b5434ff49c87953d05b
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2023-03-16 12:26:53 +00:00
Speth Chang
3add5fbcec
allow vendor init to set vendor_camera_prop
...
03-16 10:29:21.324 1 1 W /system/bin/init:
type=1107 audit(0.0:5): uid=0 auid=4294967295 ses=4294967295
subj=u:r:init:s0 msg='avc: denied { set } for
property=vendor.camera.multicam.enable_p23_multicam pid=1
uid=0 gid=0 scontext=u:r:vendor_init:s0
tcontext=u:object_r:vendor_camera_prop:s0
tclass=property_service permissive=0' bug=b/267714573
Bug: 273854225
Test: check log, GCA
Change-Id: I1c5fdff3b9978c494be9f513e1770f26804ca132
2023-03-16 13:18:17 +08:00
Jasmine Cha
df03bc9034
audio: move set property in vendor_init to gs-common am: 684d922d59
am: 777ee2e945
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/zuma-sepolicy/+/21974564
Change-Id: I30cbbba5405c2efeb193173cfece67e9b280000c
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2023-03-13 06:11:52 +00:00
Jasmine Cha
684d922d59
audio: move set property in vendor_init to gs-common
...
Bug: 259161622
Test: build pass
Change-Id: I4232a7e33c75c2dc7475e0888da7019d59de52d1
Signed-off-by: Jasmine Cha <chajasmine@google.com>
2023-03-13 10:53:58 +08:00
Jörg Wagner
d8c6712f5b
Update Mali DDK to r40 : Additional SELinux settings
...
Expose DDK's dynamic configuration options through the Android Sysprop
interface, following recommendations from Arm's Android Integration
Manual.
Bug: 261718474
(cherry picked from commit 6834d6f59f
)
Merged-In: I785106b6d2d05e21bf60fcd6da3d716b32e1bc1d
Change-Id: I0469e2f24abe7a9458305d5752ae655cf4f42547
2023-03-03 15:23:39 +00:00
Wilson Sung
b264162687
Merge "Add SSR property access and remove obsolete denials"
...
Bug: 268572164
Change-Id: I4285b0558dd2ff3bb8d4f54dfa1690828f65129a
2023-02-24 18:42:48 +08:00
Wilson Sung
546b787a40
Add SSR property access and remove obsolete denials
...
Bug: 268572164
Change-Id: I5756510b2eb2696aade93dd6b15a111f5dca58ef
2023-02-24 10:33:45 +00:00
Jörg Wagner
6834d6f59f
Update Mali DDK to r40 : Additional SELinux settings
...
Expose DDK's dynamic configuration options through the Android Sysprop
interface, following recommendations from Arm's Android Integration
Manual.
Bug: 261718474
Change-Id: I785106b6d2d05e21bf60fcd6da3d716b32e1bc1d
2023-02-15 14:19:50 +00:00
Ray Chi
cf818217df
Fix avc denied for USB property
...
Bug: 268572164
Test: reboot device and no related logs
Change-Id: I473d0ee022e9a9edc076ef479e2343d11b9ef63d
2023-02-13 17:03:02 +08:00
George
baa51816de
Update sepolicy for streset and stpreprocess
...
Allow hal_secure_element_st54spi to access nfc device
Allow hal_nfc_default to set se property
Allow vendor_init to set nfc/se property
Bug: 267838462
Test: manually trigger eSE reset without avc error
Change-Id: I0ad6a0432f4fb158186874b318b5832dddce47e6
2023-02-10 21:01:20 +08:00
Wilson Sung
e338667584
vendor_init: Add getattr to sg
...
Bug: 260522244
Change-Id: I9f447ecb635280048ca0d785f00b6c851a9dedf3
2023-02-10 18:35:47 +08:00
Wilson Sung
6cf7ce5cc0
Allow vendor_init chown gvotables
...
Bug: 267736435
Bug: 260366195
Change-Id: I0a27a7fb3719d57449fb3d7f4c4d746d09419a75
2023-02-10 18:34:51 +08:00
Wilson Sung
594dee4dc4
Allow vendor_init create link for bootdevice_sysdev
...
Bug: 263185566
Change-Id: I3a041c8dbd33c538d3971b793c64e4ea7c310190
2023-02-10 16:24:06 +08:00
Carter Hsu
f60b740692
Merge "audio: allow the default setting of the audio persistent property"
2023-02-09 01:58:16 +00:00
Carter Hsu
9d327a161a
audio: allow the default setting of the audio persistent property
...
Bug: 267694116
Test: Verified on the test build
Change-Id: I0ee81de2744656b6637868953948804d4e71dc7c
Signed-off-by: Carter Hsu <carterhsu@google.com>
2023-02-09 08:39:42 +08:00
Wilson Sung
3c6fa1dfb5
Allow vendor_init to set vendor_logger_prop
...
Bug: 267843409
Change-Id: I99a52a5d0d24f604cf3f0872d4066e1de5256e2f
2023-02-08 15:31:36 +08:00
Wilson Sung
5dbc57e7ae
Allow vendor_init to modify proc_sched
...
Bug: 263185566
Change-Id: I4a333ffd423e88af81e4c244cc7140ebd826a170
2023-02-08 12:28:31 +08:00
Wilson Sung
df495af425
vendor_init: Add getattr to modem_img
...
Bug: 63185566
Change-Id: I29fd72ba5e1482d629bc28edfd7782c6f24fe68f
2023-02-08 12:26:10 +08:00
Wilson Sung
926deec5d4
Allow vendor_init to modify read_ahead_kb
...
Bug: 264489786
Change-Id: I26d5682b3b056c8c8e00fc08581c96dcbaa27ef9
2023-02-08 04:07:22 +00:00
Jenny Ho
31f750da2b
sepolicy: add sepolicy for disable.battery.defender
...
[ 7.536208] type=1107 audit(1671575809.144:22): uid=0 auid=4294967295 ses=4294967295 subj=u:r:init:s0 msg='avc: denied { set } for property=vendor.battery.defender.disable pid=381 uid=0 gid=0 scontext=u:r:vendor_init:s0 tcontext=u:object_r:vendor_battery_defender_prop:s0 tclass=property_service permissive=1'
Bug: 263305106
Change-Id: Ia7adfe7f128c6390128447b9363ecd3615694fb1
Signed-off-by: Jenny Ho <hsiufangho@google.com>
2023-02-05 13:09:28 +08:00
Kris Chen
4963317cad
zuma: fingerprint: fix SELinux denails
...
Bug: 261105164
Test: boot with no relevant error on p23 device
Change-Id: I8d897693685591a042c5febfeca0121375749b8e
2022-12-23 17:43:50 +08:00
Adam Shih
d55543c288
isolate samsung modem related sepolicy
...
Bug: 254378739
Test: boot with relevant binary launched
Change-Id: Ia18fce855bee17b93d97d1aa29a40d834a81fe09
2022-11-09 10:41:21 +08:00
Adam Shih
62b41afb1e
review rild
...
Bug: 254378739
Test: boot with rild launched
Change-Id: I90a800bb6b15732cc2fcfdafc5174f8c874b55ef
2022-11-02 10:53:58 +08:00
Adam Shih
1889b6d85f
review modem_diagnostic_app
...
Bug: 254378739
Test: build pass
Change-Id: Ia2a07987a0e60e882074df1b8514139bdd6cd95c
2022-10-27 13:46:20 +08:00