Donnie Pollitz
e7837b9987
Add permission for storageproxy to create symlinks for ss
...
Bug: 324989972
Test: Manually test that symlinks are created with no avc denials
Signed-off-by: Donnie Pollitz <donpollitz@google.com>
(cherry picked from https://googleplex-android-review.googlesource.com/q/commit:dd71a9cf2794afecd2699bf1b245a98b5bfae376 )
Merged-In: I3f0559ee062c1b5393a2a35f957fbc8528bb58de
Change-Id: I3f0559ee062c1b5393a2a35f957fbc8528bb58de
2024-04-23 15:45:38 +00:00
Treehugger Robot
575e24cc04
Merge "Remove legacy camera HAL policy." into 24D1-dev am: f269b140a9
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/zumapro-sepolicy/+/26948535
Change-Id: I502337ad9a354179edc7ab34c7974f0a45d3bbb6
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2024-04-23 10:29:09 +00:00
Treehugger Robot
f269b140a9
Merge "Remove legacy camera HAL policy." into 24D1-dev
2024-04-23 10:06:13 +00:00
Jenny Ho
e1132a4be2
sepolicy: add permission to dump max77779 fwupdate logbuffer
...
W dump_power: type=1400 audit(0.0:9): avc: denied { read } for name="logbuffer_max77779_fwupdate" dev="tmpfs" ino=1570 scontext=u:r:dump_power:s0 tcontext=u:object_r:device:s0 tclass=chr_file permissive=0
Bug: 334198978
Change-Id: I1505abe88a18269ce50dbcec48d91622874f9a26
Signed-off-by: Jenny Ho <hsiufangho@google.com>
2024-04-23 08:04:20 +00:00
Donnie Pollitz
dd71a9cf27
Add permission for storageproxy to create symlinks for ss
...
Bug: 324989972
Test: Manually test that symlinks are created with no avc denials
Change-Id: I3f0559ee062c1b5393a2a35f957fbc8528bb58de
Signed-off-by: Donnie Pollitz <donpollitz@google.com>
2024-04-22 19:00:01 +00:00
Weizhung Ding
791a7a4eb2
Merge "display: low-light blocking zone for secondary display" into 24D1-dev am: 650e554027
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/zumapro-sepolicy/+/26994922
Change-Id: I4f331a2d73addc7f635f74cf7137e8d8c483812a
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2024-04-22 06:27:54 +00:00
Weizhung Ding
650e554027
Merge "display: low-light blocking zone for secondary display" into 24D1-dev
2024-04-22 06:12:58 +00:00
Frank Yu
7a43933e5c
Merge "Update SEpolicy for grilservice_app register callbacks of AntennaTuningService. Remove callbacks from radioext native service to grilservice_app." into 24D1-dev am: e6295955ff
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/zumapro-sepolicy/+/26783005
Change-Id: If67f2b8f38c48e933628b4d411b416068a42ae8a
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2024-04-22 04:03:11 +00:00
Frank Yu
e6295955ff
Merge "Update SEpolicy for grilservice_app register callbacks of AntennaTuningService. Remove callbacks from radioext native service to grilservice_app." into 24D1-dev
2024-04-22 03:49:13 +00:00
Martin Liu
9127824dd6
move common MM policy to gs common folder
...
Bug: 332916849
Bug: 309409009
Test: boot
Change-Id: I66e6a70e798937c7a651f9400558c431237b3a9e
Signed-off-by: Martin Liu <liumartin@google.com>
2024-04-18 01:58:21 +00:00
Treehugger Robot
6cdcc7e516
Merge "Add capacity_headroom
to gpu sysfs" into main
2024-04-17 18:53:24 +00:00
Achigo Liu
063557a306
Revert "Allow vendor_init to move tasks" am: c989d47ad9
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/zumapro-sepolicy/+/26991793
Change-Id: I309230b396e71259447b951562efaf224ff0ab08
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2024-04-17 18:09:12 +00:00
Achigo Liu
c989d47ad9
Revert "Allow vendor_init to move tasks"
...
Revert submission 26931570-cpuset_system_group
Reason for revert: b/335346990 suspend/resume ramdump or black screen
Reverted changes: /q/submissionid:26931570-cpuset_system_group
Change-Id: Ib505a519b519bf8c907ca9f5973d01a2f00bd841
2024-04-17 09:35:53 +00:00
Weizhung Ding
9fe206c50f
display: low-light blocking zone for secondary display
...
Bug: 320804821
Test: dumpsys SurfaceFlinger| grep "blocking zone"
Change-Id: Iba1e005ddaf28a7a8d1d10677b5e501aaefa6c68
2024-04-17 08:27:18 +00:00
Rick Yiu
e594c0c025
Allow vendor_init to move tasks am: 6122e05a50
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/zumapro-sepolicy/+/26968797
Change-Id: I591ba94dd745edb457266ed388978119cfef015e
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2024-04-16 03:33:28 +00:00
Rick Yiu
6122e05a50
Allow vendor_init to move tasks
...
To move tasks to cpuset system group.
Bug: 328210236
Test: build pass
Change-Id: I9336ec8922cbfed496ef37df73e3ecdf83a98584
2024-04-15 14:26:29 +00:00
Kyle Tso
2ac5589553
file_contexts: Add logbuffer_pogo_transport
...
Bug: 328314131
Change-Id: Ie846cc75366375d5bd4889b2cf8061baf2aa82a5
Signed-off-by: Kyle Tso <kyletso@google.com>
2024-04-15 17:12:30 +08:00
Jenny Ho
50a9b3df83
Merge "sepolicy: allow pixelstats to access maxfg_history" into 24D1-dev am: a81b52aeb8
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/zumapro-sepolicy/+/26930555
Change-Id: I7205a414e0b469f080f26e6b847a8bad86799ffd
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2024-04-15 01:18:32 +00:00
Jenny Ho
a81b52aeb8
Merge "sepolicy: allow pixelstats to access maxfg_history" into 24D1-dev
2024-04-15 00:56:21 +00:00
Kevin DuBois
4d50d35fcd
Add capacity_headroom
to gpu sysfs
...
This allows userspace (notably the power HAL) to apply a boost to GPU
frequency independent of previously measured load.
Bug: 290625326
Test: boot, run modified Power HAL
Change-Id: I87b2e3d3dbb0a6c3eb68970fc3f3380b61586a46
2024-04-12 19:40:56 -07:00
Krzysztof Kosiński
6d632595b6
Remove legacy camera HAL policy.
...
All of these accesses are still needed.
Bug: 313934097
Test: presubmit
Change-Id: I5222a7416d7cffed0d84b1a4c80f74edc4aadd49
2024-04-12 22:32:38 +00:00
Martin Liu
b7fe5c6f6a
allow vendor init to access percpu_pagelist_high_fraction am: 8c4445390a
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/zumapro-sepolicy/+/26919146
Change-Id: I3de00f10535dfb7bcb32dcb19828db01d88f80df
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2024-04-12 18:11:39 +00:00
Jenny Ho
b078a0eeca
sepolicy: allow pixelstats to access maxfg_history
...
to dump secondary battery history for dual battery projects:
avc: denied { read } for name="maxfg_history" dev="tmpfs" ino=1127 scontext=u:r:pixelstats_vendor:s0 tcontext=u:object_r:device:s0 tclass=chr_file permissive=0
Bug: 333952062
Change-Id: I072db3adff63c63ebbb5b1ba4dabfccfe3d6adac
Signed-off-by: Jenny Ho <hsiufangho@google.com>
2024-04-12 00:25:11 +00:00
Martin Liu
8c4445390a
allow vendor init to access percpu_pagelist_high_fraction
...
Bug: 333838316
Test: boot
Change-Id: I4b29278c4a7be10609e0aaafe99603d4762f64b6
Signed-off-by: Martin Liu <liumartin@google.com>
2024-04-11 15:03:58 +00:00
Treehugger Robot
c2791c61e2
Merge "allow vendor init to access compaction_proactiveness" into main
2024-04-11 11:02:08 +00:00
Martin Liu
1270b7766d
allow vendor init to access compaction_proactiveness
...
Bug: 332916849
Test: boot
Change-Id: Id640b5ae489e003e9b3bad6054f415f3742832c5
Merged-In: Id640b5ae489e003e9b3bad6054f415f3742832c5
Signed-off-by: Martin Liu <liumartin@google.com>
2024-04-11 02:56:26 +00:00
Martin Liu
a5660dceda
allow vendor init to access compaction_proactiveness
...
Bug: 332916849
Test: boot
Change-Id: Id640b5ae489e003e9b3bad6054f415f3742832c5
Signed-off-by: Martin Liu <liumartin@google.com>
2024-04-11 02:52:06 +00:00
Cheng Chang
57c36bd644
Merge "sepolicy: sysfs to gnssif/wakeup node" into 24D1-dev am: a1d7364f1f
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/zumapro-sepolicy/+/26795509
Change-Id: I4e42561e483036cb9d1c850cb8f36fef31cf45ff
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2024-04-10 03:47:51 +00:00
Cheng Chang
a1d7364f1f
Merge "sepolicy: sysfs to gnssif/wakeup node" into 24D1-dev
2024-04-10 03:28:56 +00:00
Treehugger Robot
8804ef12db
Merge "display: low-light blocking zone support" into 24D1-dev
2024-04-04 02:46:42 +00:00
Frank Yu
f1b959a0ed
Update SEpolicy for grilservice_app register
...
callbacks of AntennaTuningService. Remove callbacks from radioext native
service to grilservice_app.
Bug: 321790599
Test: Manual test. gripservice_app receive update from callback successfully. Because moving out the callbacks from radioext to grilservice_app, we don't need antennatuningservice bind to radioext anymore.
Change-Id: I6827b506b9893e43d6d9268f623b33b848863a7c
2024-04-03 07:08:06 +00:00
cweichun
0b6fd93f3e
display: low-light blocking zone support
...
Bug: 315876417
Test: verify the functionality works
Change-Id: I8de35ac0685c9b5b07385001479906a84901b347
2024-04-02 15:25:43 +00:00
Cheng Chang
cdd424134a
sepolicy: sysfs to gnssif/wakeup node
...
avc: denied { read } for comm="binder:459_2" name="wakeup2" dev="sysfs" ino=54040 scontext=u:r:system_suspend:s0 tcontext=u:object_r:sysfs:s0 tclass=dir permissive=0
Bug: 329334328
Test: abtd under b/329334328 device-boot-health-check-extra.
Test: boot and check logcat avc.
Change-Id: If0e95efee521d15928648d1042f87d02fd41c637
2024-04-02 09:07:26 +00:00
Spade Lee
aac2240ca4
sepolicy: allow kernel to search vendor debugfs
...
audit: type=1400 audit(1710259012.824:4): avc: denied { search } for pid=128 comm="kworker/3:1" name="max77779fg" dev="debugfs" ino=24204 scontext=u:r:kernel:s0 tcontext=u:object_r:vendor_maxfg_debugfs:s0 tclass=dir permissive=0
audit: type=1400 audit(1710427790.680:2): avc: denied { search } for pid=10 comm="kworker/u16:1" name="gvotables" dev="debugfs" ino=10582 scontext=u:r:kernel:s0 tcontext=u:object_r:vendor_votable_debugfs:s0 tclass=dir permissive=1
audit: type=1400 audit(1710427790.680:3): avc: denied { search } for pid=211 comm="kworker/u16:4" name="google_charger" dev="debugfs" ino=16673 scontext=u:r:kernel:s0 tcontext=u:object_r:vendor_charger_debugfs:s0 tclass=dir permissive=1
Bug: 328016570
Bug: 329317898
Test: check all debugfs folders are correctly mounted
Change-Id: Ib25cc13a329b40bebe87fab43e955e2e4395de9e
Signed-off-by: Spade Lee <spadelee@google.com>
2024-04-02 07:35:39 +00:00
Treehugger Robot
15352500d0
Merge "display: low-light blocking zone support" into main
2024-04-02 04:21:29 +00:00
cweichun
f080553fa0
display: low-light blocking zone support
...
Bug: 315876417
Test: verify the functionality works
Change-Id: I8de35ac0685c9b5b07385001479906a84901b347
2024-04-01 22:39:32 +00:00
Treehugger Robot
cb1d17b4ba
Merge "usb: correct the xhci wakeup path" into main
2024-04-01 04:00:20 +00:00
Shiyong Li
7835c69828
Merge "Label te2_rate_hz and te2_option as sysfs_display" into 24D1-dev am: a06f6749c8
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/zumapro-sepolicy/+/26481942
Change-Id: I23e6fe5f8f808ee1b6b32b187fafb59d9760ec8f
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2024-03-28 21:37:16 +00:00
Shiyong Li
a06f6749c8
Merge "Label te2_rate_hz and te2_option as sysfs_display" into 24D1-dev
2024-03-28 21:10:16 +00:00
Priyanka Advani
1492ce0ed4
Merge "Revert "sepolicy: Allow PixelGnss to connect to Chre HAL"" into 24D1-dev am: 3f268ee8a9
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/zumapro-sepolicy/+/26750102
Change-Id: I14a8d6f7148f73eed745269fb2d3e06381e5db4f
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2024-03-28 20:20:54 +00:00
Priyanka Advani
3f268ee8a9
Merge "Revert "sepolicy: Allow PixelGnss to connect to Chre HAL"" into 24D1-dev
2024-03-28 20:01:53 +00:00
Priyanka Advani
7299abaa81
Revert "sepolicy: Allow PixelGnss to connect to Chre HAL"
...
Revert submission 26593083-lassen_pps
Reason for revert: Culprit for test breakages in b/331680556. Will be verifying through ABTD for confirmation and before submitting the revert.
Bug: b/331680556
Reverted changes: /q/submissionid:26593083-lassen_pps
Change-Id: I64487bc049ac7aa53b5bff461a033f70428ab6a9
2024-03-28 19:54:08 +00:00
Chris Lu
2c3dc0c668
Label te2_rate_hz and te2_option as sysfs_display
...
Bug: 307787644
Test: Check the files label: adb shell ls -Z
Change-Id: Iab036b86b6d0c28191212a3ac10be6ddb5dcbd2b
2024-03-28 00:31:25 +00:00
WeiChungChang
8f872df64a
display: create entity_name property am: c46f6cf333
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/zumapro-sepolicy/+/26714643
Change-Id: Ic20b233c5112eafd1829dea6280680016b0945bf
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2024-03-27 19:10:34 +00:00
WeiChungChang
c46f6cf333
display: create entity_name property
...
HWC should designate the entity name 'Inner-Display'
for the primary display in cases of dual panels.
Bug: 329370514
Test: verify powerstats for dual panel devices
Change-Id: I284ff460709da6a8cb48a35bf2b805ea3d09c990
2024-03-26 22:40:54 +00:00
Cheng Chang
07d703b246
Merge "sepolicy: Allow PixelGnss to connect to Chre HAL" into 24D1-dev am: 3d57c4ee96
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/zumapro-sepolicy/+/26588701
Change-Id: I766c697005435e4a74bd3f8003ecb9b92255ac96
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2024-03-25 13:09:33 +00:00
Cheng Chang
3d57c4ee96
Merge "sepolicy: Allow PixelGnss to connect to Chre HAL" into 24D1-dev
2024-03-25 12:51:10 +00:00
Cheng Chang
79e12fe426
sepolicy: Allow PixelGnss to connect to Chre HAL
...
avc: denied { call } for scontext=u:r:hal_contexthub_default:s0 tcontext=u:r:hal_gnss_pixel:s0 tclass=binder permissive=0
Bug: 316227249
Test: Verify PixelGnss HAL can connect to Chre HAL.
Test: Function test verification b/330120749 without disable selinux.
Test: No avc error log in logcat.
Change-Id: I7f6a45cd80c7ccbba2af1a0d3f3d89f30267db00
2024-03-25 06:59:51 +00:00
Sam Ou
d03db6fe73
Merge "sepolicy: fix odpm scale value path" into 24D1-dev am: 69b8799f82
...
Original change: https://googleplex-android-review.googlesource.com/c/device/google/zumapro-sepolicy/+/26678608
Change-Id: I8cab9f4ee662b370e1118215f76841735631bf36
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
2024-03-25 02:52:18 +00:00
samou
8ff89c21d0
sepolicy: fix odpm scale value path
...
Extend odpm sysfs path to cover the
different startup sequence.
Bug: 330815850
Change-Id: Ifd346f379b71c790e175e08e74398bae0c0417df
Signed-off-by: samou <samou@google.com>
2024-03-22 10:38:08 +00:00