From 5363d06f07a7ae4370bd2f9787d0b07d42c924ed Mon Sep 17 00:00:00 2001 From: Nick Desaulniers Date: Wed, 7 Jun 2017 16:43:27 -0700 Subject: [PATCH] wahoo: sepolicy: remove libbinder rules for fingerprint Libbinder is just needed for dev/debug tools. SELinux can be disabled for those. Test: enroll fingerprints, apply patch, can still authenticate/navigate Change-Id: Ifa29bdb5cc393ed0c8e894ef76c0d4b5c58847e2 Fixes: 36686751 Bug: 37755263 --- sepolicy/vendor/hal_fingerprint.te | 3 --- sepolicy/vendor/hal_fingerprint_default.te | 2 -- 2 files changed, 5 deletions(-) delete mode 100644 sepolicy/vendor/hal_fingerprint_default.te diff --git a/sepolicy/vendor/hal_fingerprint.te b/sepolicy/vendor/hal_fingerprint.te index ca0c4b5e..3f2e772d 100644 --- a/sepolicy/vendor/hal_fingerprint.te +++ b/sepolicy/vendor/hal_fingerprint.te @@ -1,6 +1,3 @@ -# TODO(b/36587860): Remove once Fingerprint HAL no longer uses Binder -binder_use(hal_fingerprint) - allow hal_fingerprint sysfs_fingerprint:dir r_dir_perms; allow hal_fingerprint sysfs_fingerprint:file rw_file_perms; allow hal_fingerprint sysfs_msm_subsys:dir search; diff --git a/sepolicy/vendor/hal_fingerprint_default.te b/sepolicy/vendor/hal_fingerprint_default.te deleted file mode 100644 index 7dbe89a2..00000000 --- a/sepolicy/vendor/hal_fingerprint_default.te +++ /dev/null @@ -1,2 +0,0 @@ -# TODO(b/36587860): Remove once Fingerprint HAL no longer uses Binder -typeattribute hal_fingerprint_default binder_in_vendor_violators;