This is enabled on debuggable builds only, includes - Grant mlstrustedsubject typeattribute to wm_trace_data_file - Grant systemui the write access to wm_trace_data_file Bug: 251513116 Bug: 288049075 Test: make sepolicy Change-Id: I47c9bbf13835b2e7eaac3e2b436e3b486ce02431
25 lines
1.1 KiB
Text
25 lines
1.1 KiB
Text
typeattribute systemui_app coredomain;
|
|
app_domain(systemui_app)
|
|
allow systemui_app app_api_service:service_manager find;
|
|
allow systemui_app network_score_service:service_manager find;
|
|
allow systemui_app overlay_service:service_manager find;
|
|
allow systemui_app color_display_service:service_manager find;
|
|
allow systemui_app audioserver_service:service_manager find;
|
|
allow systemui_app cameraserver_service:service_manager find;
|
|
allow systemui_app mediaserver_service:service_manager find;
|
|
allow systemui_app mediaextractor_service:service_manager find;
|
|
allow systemui_app mediametrics_service:service_manager find;
|
|
allow systemui_app radio_service:service_manager find;
|
|
allow systemui_app vr_manager_service:service_manager find;
|
|
allow systemui_app statsmanager_service:service_manager find;
|
|
|
|
get_prop(systemui_app, keyguard_config_prop)
|
|
set_prop(systemui_app, bootanim_system_prop)
|
|
get_prop(systemui_app, qemu_hw_prop)
|
|
|
|
# Allow writing and removing wmshell protolog in /data/misc/wmtrace.
|
|
userdebug_or_eng(`
|
|
allow systemui_app wm_trace_data_file:dir rw_dir_perms;
|
|
allow systemui_app wm_trace_data_file:file create_file_perms;
|
|
')
|
|
|