Cheng Chang
07d703b246
Merge "sepolicy: Allow PixelGnss to connect to Chre HAL" into 24D1-dev am: 3d57c4ee96
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/zumapro-sepolicy/+/26588701
Change-Id: I766c697005435e4a74bd3f8003ecb9b92255ac96
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2024-03-25 13:09:33 +00:00
Cheng Chang
3d57c4ee96
Merge "sepolicy: Allow PixelGnss to connect to Chre HAL" into 24D1-dev
2024-03-25 12:51:10 +00:00
Cheng Chang
79e12fe426
sepolicy: Allow PixelGnss to connect to Chre HAL
...
avc: denied { call } for scontext=u:r:hal_contexthub_default:s0 tcontext=u:r:hal_gnss_pixel:s0 tclass=binder permissive=0
Bug: 316227249
Test: Verify PixelGnss HAL can connect to Chre HAL.
Test: Function test verification b/330120749 without disable selinux.
Test: No avc error log in logcat.
Change-Id: I7f6a45cd80c7ccbba2af1a0d3f3d89f30267db00
2024-03-25 06:59:51 +00:00
Sam Ou
d03db6fe73
Merge "sepolicy: fix odpm scale value path" into 24D1-dev am: 69b8799f82
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/zumapro-sepolicy/+/26678608
Change-Id: I8cab9f4ee662b370e1118215f76841735631bf36
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2024-03-25 02:52:18 +00:00
Sam Ou
69b8799f82
Merge "sepolicy: fix odpm scale value path" into 24D1-dev
2024-03-25 02:35:28 +00:00
Hungyen Weng
84a12fc4ed
Merge "Allow modem_svc to access modem files and perfetto" into main
2024-03-22 23:52:51 +00:00
samou
8ff89c21d0
sepolicy: fix odpm scale value path
...
Extend odpm sysfs path to cover the
different startup sequence.
Bug: 330815850
Change-Id: Ifd346f379b71c790e175e08e74398bae0c0417df
Signed-off-by: samou <samou@google.com>
2024-03-22 10:38:08 +00:00
derickhong
17ba02512b
Update SELinux error am: 1f38fe473a
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/zumapro-sepolicy/+/26641567
Change-Id: Ife0b7455701eb14228985e78612341cae5620a87
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2024-03-22 04:03:41 +00:00
Hungyen Weng
b5b20910e8
Allow modem_svc to access modem files and perfetto
...
Bug: 330730987
Test: Confirmed that modem_svc is able to access token db files in modem partition
Test: Confiemed that modem_svc can send traces to perfetto
Change-Id: Iaff263b1052cb565ffee30e442ee3c5824f35db9
2024-03-22 00:29:20 +00:00
Oleg Blinnikov
c2e527cbf1
Merge "persist.sys.hdcp_checking property added" into main
2024-03-21 12:21:30 +00:00
Spade Lee
b3e3319964
Merge "sepolicy: allow kernel to search vendor debugfs" into main
2024-03-21 06:35:25 +00:00
Spade Lee
bac2d41b9c
sepolicy: allow kernel to search vendor debugfs
...
audit: type=1400 audit(1710259012.824:4): avc: denied { search } for pid=128 comm="kworker/3:1" name="max77779fg" dev="debugfs" ino=24204 scontext=u:r:kernel:s0 tcontext=u:object_r:vendor_maxfg_debugfs:s0 tclass=dir permissive=0
audit: type=1400 audit(1710427790.680:2): avc: denied { search } for pid=10 comm="kworker/u16:1" name="gvotables" dev="debugfs" ino=10582 scontext=u:r:kernel:s0 tcontext=u:object_r:vendor_votable_debugfs:s0 tclass=dir permissive=1
audit: type=1400 audit(1710427790.680:3): avc: denied { search } for pid=211 comm="kworker/u16:4" name="google_charger" dev="debugfs" ino=16673 scontext=u:r:kernel:s0 tcontext=u:object_r:vendor_charger_debugfs:s0 tclass=dir permissive=1
Bug: 328016570
Bug: 329317898
Test: check all debugfs folders are correctly mounted
Change-Id: Ib25cc13a329b40bebe87fab43e955e2e4395de9e
Signed-off-by: Spade Lee <spadelee@google.com>
2024-03-20 18:13:22 +00:00
derickhong
1f38fe473a
Update SELinux error
...
Bug: 326869289
Test: adb shell dmesg | grep avc ; adb logcat -d | grep avc
Change-Id: I57090ee64cafc5c2a9d98ec02152fdc9eb495591
2024-03-20 07:39:32 +00:00
Oleg Blinnikov
51e4f2e9eb
persist.sys.hdcp_checking property added
...
Change-Id: I7ae5e18afe7ee1b7d86c63adeda748e439b7b5ea
Bug: 321344894
Test: modify property, see that max_ver file is updated
2024-03-19 16:06:08 +00:00
Chris Lu
026570c6c7
Allow hwc to access te_info
...
Bug: 315094023
Test: can access sysfs node te_info
Change-Id: I9d418ab92cc68e0234e19162812cc33a8c07e40c
2024-03-18 11:57:24 +08:00
Tim Lin
31edc2fa71
Merge "allow GRIL native to read modem type" into 24D1-dev am: d0b2833cac
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/zumapro-sepolicy/+/26511650
Change-Id: Ia61f748f9185cbff881fbd544188ea8ec9d2fad6
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2024-03-12 04:45:30 +00:00
Tim Lin
d0b2833cac
Merge "allow GRIL native to read modem type" into 24D1-dev
2024-03-12 04:00:43 +00:00
Zheng Pan
ef23bee122
Merge "Move display properties from tracking_denials to vendor" into 24D1-dev am: e29dd9a08b
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/zumapro-sepolicy/+/26513682
Change-Id: I4cfd39a984c4cb98f69a7d75581dacf631998f87
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2024-03-11 21:45:49 +00:00
Zheng Pan
561bce895b
Merge "Move display properties from tracking_denials to vendor" into main
2024-03-11 21:04:23 +00:00
Zheng Pan
e29dd9a08b
Merge "Move display properties from tracking_denials to vendor" into 24D1-dev
2024-03-11 21:04:14 +00:00
Yabin Cui
a250446252
Merge "Add SOC specific ETE sysfs paths" into 24D1-dev am: f5490aab33
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/zumapro-sepolicy/+/26478052
Change-Id: Iba000c092919eaf14ebc2e8fe871d7ee2c7b6978
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2024-03-08 19:54:47 +00:00
Yabin Cui
f5490aab33
Merge "Add SOC specific ETE sysfs paths" into 24D1-dev
2024-03-08 19:14:12 +00:00
John Chang
46d2322311
Move display properties from tracking_denials to vendor
...
Bug: 328001545
Test: Test MRR Version 2 is properly configured
Change-Id: Ib586398670b21bb88cd122647880149daa628d0d
2024-03-08 16:32:30 +00:00
John Chang
21601cc866
Move display properties from tracking_denials to vendor
...
Bug: 328001545
Test: Test MRR Version 2 is properly configured
Change-Id: Ib586398670b21bb88cd122647880149daa628d0d
2024-03-08 16:23:52 +00:00
timtmlin
f64d18749f
allow GRIL native to read modem type
...
telephony.ril.modem_bin_status is set by CBD
Bug: 328148438
Test: check GRIL requests at TN modem and NTN modem
Change-Id: I5a3265a89ff365fd5ae1f49a452b3abf73461c7c
2024-03-08 23:30:03 +08:00
John Chang
b94f5028b7
display: change vrr.enabled to xrr.version am: ff239639f8
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/zumapro-sepolicy/+/26501857
Change-Id: I75c7765e14cec4c8b33b652b860257d4bb973e12
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2024-03-08 11:17:09 +00:00
Shiyong Li
22faa3ba48
Merge "display: change vrr.enabled to xrr.version" into main
2024-03-08 01:28:49 +00:00
John Chang
ff239639f8
display: change vrr.enabled to xrr.version
...
Bug: 328001545
Test: Test MRR Version 2 is properly configured
Change-Id: I02291bb537fe5a09ab8a1aa755426f45465883a9
2024-03-07 22:19:51 +00:00
Yabin Cui
76c40d23cf
Add SOC specific ETE sysfs paths
...
Bug: 321061072
Test: run profcollectd on device
Change-Id: I7eb39a5e9f586e36edd11679b0988af2ff6b986b
2024-03-07 19:53:25 +00:00
Yabin Cui
af6b895528
Add SOC specific ETE sysfs paths
...
Bug: 321061072
Test: run profcollectd on device
Change-Id: I7eb39a5e9f586e36edd11679b0988af2ff6b986b
2024-03-06 11:06:13 -08:00
John Chang
0bb5c5b305
display: change vrr.enabled to xrr.version
...
Bug: 328001545
Test: Test MRR Version 2 is properly configured
Change-Id: I02291bb537fe5a09ab8a1aa755426f45465883a9
2024-03-06 16:05:43 +00:00
Kah Xuan Lim
6914e7a49b
Modem ML: Add sepolicy for TFLiteService
...
Add the sepolicy required to:
- Introduce modemml_tflite_service which runs on the system server.
- Allow modem_ml_svc_sit to access the new service.
- Allow system_server to access NNAPI TPU service.
Relevant logs before the sepolicy changes are made:
```
auditd : avc: denied { find } for pid=1000 uid=1001 name=com.android.server.modemml.ITFLiteService/default scontext=u:r:modem_ml_svc_sit:s0 tcontext=u:object_r:modemml_tflite_service:s0 tclass=service_manager permissive=1
```
```
11-14 03:03:44.392 1064 1064 I auditd : type=1400 audit(0.0:9): avc: denied { call } for comm="modem_ml_svc_si" scontext=u:r:modem_ml_svc_sit:s0 tcontext=u:r:system_server:s0 tclass=binder permissive=1
```
```
SELinux : avc: denied { find } for pid=1115 uid=1000 name=android.hardware.neuralnetworks.IDevice/google-edgetpu scontext=u:r:system_server:s0 tcontext=u:object_r:edgetpu_nnapi_service:s0 tclass=service_manager permissive=1
```
Bug: 307449478
Change-Id: I14c2aa02eca08a026d100af6eea11ac9ac9e4fc7
2024-03-06 13:35:33 +08:00
Hwayoung Helen Kim
dc37b510fa
Merge "Allow imssvc property access for the audio path in PDK build" into main
2024-03-05 06:48:16 +00:00
Treehugger Robot
87c046a3bf
Merge "Add AIDL media.c2 into service_contexts" into main
2024-03-05 06:17:02 +00:00
Wilson Sung
71366fa516
Merge "ssr_detector: remove tracking denial" into main
2024-03-05 03:26:01 +00:00
Derick Hong
b1a32915a4
Merge "Update SELinux error" into main
2024-03-05 03:05:10 +00:00
Treehugger Robot
4d305706a5
Merge "add dsim wakeup labels" into main
2024-02-28 03:59:20 +00:00
Sungtak Lee
f8aaa7afa0
Add AIDL media.c2 into service_contexts
...
Bug: 321808716
Change-Id: Ieff24ebd4c5ce6201faecf819828f21cb598de67
2024-02-27 18:14:13 +00:00
Peter Lin
f88ffce8c7
add dsim wakeup labels
...
Bug: 321733124
test: ls sys/devices/platform/19440000.drmdsim/19440000.drmdsim.0/wakeup -Z
Change-Id: I28bc16f23478131dfecf2ad61b306ce9ae1e2767
2024-02-27 12:59:04 +00:00
derickhong
f77068cbe0
Update SELinux error
...
Bug: 326869289
Test: adb shell dmesg | grep avc ; adb logcat -d | grep avc
Change-Id: I57090ee64cafc5c2a9d98ec02152fdc9eb495591
2024-02-27 16:22:54 +08:00
Salmax Chang
38170d1c85
ssr_detector: remove tracking denial
...
Bug: 307468827
Change-Id: I232d7afd5d002ef59311a16317e0e2b7a1ccbfb7
2024-02-27 12:18:54 +08:00
Thiébaud Weksteen
8816a77795
Merge "Revert^2 "Remove persist.bootanim.color property definitions"" into main
2024-02-26 22:40:44 +00:00
Jack Wu
85aa1cb4b1
dontaudit on dir search for vendor_charger_debugfs
...
Bug: 326869335
Test: make selinux_policy
Change-Id: I22623dd1c47a431233eb6666dbe37fa2d9aa73a3
Signed-off-by: Jack Wu <wjack@google.com>
2024-02-26 21:10:51 +08:00
Wilson Sung
348e64ecce
Update SELinux error
...
Test: SELinuxUncheckedDenialBootTest
Bug: 326869289
Bug: 326869335
Test: scanBugreport
Bug: 326869823
Test: scanAvcDeniedLogRightAfterReboot
Bug: 326869239
Change-Id: I8b245d769ae91c2f3f3d2dd7cfb1b8eebb83dd22
2024-02-26 08:37:54 +00:00
Thiébaud Weksteen
52478ef92b
Revert^2 "Remove persist.bootanim.color property definitions"
...
110b7705a1
Change-Id: I9e49db39f15479083e6187f1db17af084441ff04
2024-02-25 23:59:49 +00:00
Chi Zhang
9de082ad52
Merge "Allow GRIL to get IRQ counts." into main
2024-02-23 22:07:01 +00:00
Rubin Xu
bdc3b23756
Merge "Revert "Remove persist.bootanim.color property definitions"" into main
2024-02-23 12:42:52 +00:00
Rubin Xu
110b7705a1
Revert "Remove persist.bootanim.color property definitions"
...
Revert submission 26301396-bootanim_prop
Reason for revert: DroidMonitor-triggered revert due to breakage https://android-build.corp.google.com/quarterdeck/?branch=git_main&target=sdk_goog3_x86_64-trunk_staging-userdebug&lkgb=11487950&lkbb=11488141&fkbb=11488141
Bug: 326521604
Reverted changes: /q/submissionid:26301396-bootanim_prop
Change-Id: Idfb848f2a4df8191c867aedfd4ec24f18de1b1ad
2024-02-23 12:26:04 +00:00
Helen
1518455ede
Allow imssvc property access for the audio path in PDK build
...
Bug: 319336100
Test: build and test using the PDK build in live network
Change-Id: I2e2045cde6a4cc5c5ea52b205aea6cb6da18e0b9
2024-02-23 08:45:53 +00:00
Thiébaud Weksteen
7c18ffbf3e
Merge "Remove persist.bootanim.color property definitions" into main
2024-02-23 02:59:57 +00:00