Allow regmap debugfs for drivers probed by insmod

auditd  : type=1400 audit(0.0:731): avc:  denied  { search } for
comm="modprobe" name="regmap" dev="debugfs" ino=2057
scontext=u:r:insmod-sh:s0 tcontext=u:object_r:vendor_regmap_debugfs:s0
tclass=dir permissive=1 bug=b/274727542

vendor_kernel_boot and vendor_dlkm modules probe by insmod need this.
Move regmap debugfs from legacy/whitechapel_pro/ to vendor/.

Bug: 274727542
Bug: 289012421
Bug: 285343932
Test: ls -d /sys/kernel/debug/regmap/*-0043
Change-Id: I1db7a5a3413467b4e14954d994b071b206fe0300
This commit is contained in:
Tai Kuo 2023-09-12 16:42:21 +08:00
parent c9a5c03e84
commit a3abd5ad39
6 changed files with 7 additions and 7 deletions

1
vendor/insmod-sh.te vendored Normal file
View file

@ -0,0 +1 @@
allow insmod-sh vendor_regmap_debugfs:dir search;