Add selinux policy for chre vendor data directory am: ea65f1e6bd am: 7372e55b9a

Original change: https://googleplex-android-review.googlesource.com/c/device/google/zumapro-sepolicy/+/23782897

Change-Id: I7da75ed9b49c1db7586dd7b02176b6711decc280
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
This commit is contained in:
Yixuan Wang 2023-06-26 02:29:58 +00:00 committed by Automerger Merge Worker
commit 47867f8ff1
3 changed files with 6 additions and 0 deletions

4
vendor/chre.te vendored
View file

@ -12,5 +12,9 @@ allow chre sysfs_aoc_boottime:file r_file_perms;
# Allow CHRE to create thread to watch AOC's device
allow chre device:dir r_dir_perms;
# Allow CHRE to write to data to chre data directory
allow chre chre_data_file:dir create_dir_perms;
allow chre chre_data_file:file create_file_perms;
# Allow CHRE to use WakeLock
wakelock_use(chre)

1
vendor/file.te vendored
View file

@ -35,6 +35,7 @@ type vendor_bt_data_file, file_type, data_file_type;
# Data
type sensor_reg_data_file, file_type, data_file_type;
type chre_data_file, file_type, data_file_type;
# Vendor sched files
userdebug_or_eng(`

View file

@ -38,6 +38,7 @@
# Vendor
/data/vendor/bluetooth(/.*)? u:object_r:vendor_bt_data_file:s0
/data/vendor/chre(/.*)? u:object_r:chre_data_file:s0
# persist
/mnt/vendor/persist/camera(/.*)? u:object_r:persist_camera_file:s0