Update sepolicy for nfc antenna selftest values

Allow persist.vendor.nfc.antenna. to be vendor public values for the NFC
companion app to access

avc:  denied  { read } for  name="u:object_r:vendor_nfc_antenna_prop:s0" dev="tmpfs" ino=414 scontext=u:r:untrusted_app:s0:c79,c257,c512,c768 tcontext=u:object_r:vendor_nfc_antenna_prop:s0 tclass=file permissive=0 app=com.google.android.apps.internal.nfcassistancetool

Bug: 361050657
Test: m selinux_policy
Flag: NONE add permission
Change-Id: I0e7c3580e4df332fa3d14c939eb5e588f7600601
This commit is contained in:
Nattharat Jariyanuntanaet 2024-08-21 06:13:21 +00:00
parent e584e43da5
commit 4599e2be44
3 changed files with 8 additions and 1 deletions

View file

@ -1,5 +1,7 @@
# HAL NFC property
get_prop(hal_nfc_default, vendor_nfc_prop)
set_prop(hal_nfc_default, vendor_nfc_prop)
set_prop(hal_nfc_default, vendor_nfc_antenna_prop)
get_prop(untrusted_app, vendor_nfc_antenna_prop)
# SecureElement property
set_prop(hal_nfc_default, vendor_secure_element_prop)

View file

@ -1,6 +1,7 @@
# b/314065301
vendor_internal_prop(vendor_nfc_prop)
vendor_restricted_prop(vendor_nfc_antenna_prop)
vendor_internal_prop(vendor_battery_profile_prop)
vendor_internal_prop(vendor_camera_fatp_prop)
vendor_internal_prop(vendor_display_prop)

View file

@ -5,6 +5,10 @@ vendor.usb. u:object_r:vendor_usb_config_prop:s0
# SecureElement
persist.vendor.se. u:object_r:vendor_secure_element_prop:s0
# NFC
persist.vendor.nfc. u:object_r:vendor_nfc_prop:s0
persist.vendor.nfc.antenna. u:object_r:vendor_nfc_antenna_prop:s0
# vendor default
ro.vendor.sys. u:object_r:vendor_ro_sys_default_prop:s0
persist.vendor.sys. u:object_r:vendor_persist_sys_default_prop:s0