From 2b70f82f1d1a1a5ee035cce91f568da87c29fa7f Mon Sep 17 00:00:00 2001 From: Wilson Sung Date: Tue, 26 Dec 2023 20:39:25 +0800 Subject: [PATCH] Move kernel from legacy to vendor Bug: 312143882 Test: make sepolicy Change-Id: I01b192c7d60cda8e52f6a3fffd5e0dec7a660172 --- legacy/zuma/vendor/kernel.te | 15 --------------- vendor/kernel.te | 16 ++++++++++++++++ 2 files changed, 16 insertions(+), 15 deletions(-) delete mode 100644 legacy/zuma/vendor/kernel.te diff --git a/legacy/zuma/vendor/kernel.te b/legacy/zuma/vendor/kernel.te deleted file mode 100644 index 0f2e18e..0000000 --- a/legacy/zuma/vendor/kernel.te +++ /dev/null @@ -1,15 +0,0 @@ -allow kernel vendor_fw_file:dir search; -allow kernel vendor_fw_file:file r_file_perms; - -# ZRam -allow kernel per_boot_file:file r_file_perms; - -# memlat needs permision to create/delete perf events when hotplug on/off -allow kernel self:capability2 perfmon; -allow kernel self:perf_event cpu; - -no_debugfs_restriction(` - allow kernel vendor_battery_debugfs:dir search; -') - -allow kernel vendor_regmap_debugfs:dir search; diff --git a/vendor/kernel.te b/vendor/kernel.te index 63a6f35..e4f65cd 100644 --- a/vendor/kernel.te +++ b/vendor/kernel.te @@ -1 +1,17 @@ +allow kernel vendor_fw_file:dir search; +allow kernel vendor_fw_file:file r_file_perms; + +# ZRam +allow kernel per_boot_file:file r_file_perms; + +# memlat needs permision to create/delete perf events when hotplug on/off +allow kernel self:capability2 perfmon; +allow kernel self:perf_event cpu; + +no_debugfs_restriction(` + allow kernel vendor_battery_debugfs:dir search; +') + +allow kernel vendor_regmap_debugfs:dir search; + dontaudit kernel vendor_usb_debugfs:dir search;