mirror of
https://github.com/Evolution-X-Devices/device_google_wahoo
synced 2026-02-03 01:42:18 +00:00
Merge "netmgrd: auditallow access to system_file type."
This commit is contained in:
6
sepolicy/vendor/netmgrd.te
vendored
6
sepolicy/vendor/netmgrd.te
vendored
@@ -28,6 +28,9 @@ allow netmgrd sysfs_msm_subsys:dir r_dir_perms;
|
||||
allow netmgrd sysfs_msm_subsys:file r_file_perms;
|
||||
|
||||
allow netmgrd system_file:file lock;
|
||||
# TODO(b/111243627): Expose required system components via separate types once
|
||||
# we have enough information about what is needed by netmgrd.
|
||||
auditallow netmgrd system_file:file lock;
|
||||
|
||||
r_dir_file(netmgrd, sysfs_msm_subsys)
|
||||
|
||||
@@ -52,6 +55,9 @@ allow netmgrd proc_net:file rw_file_perms;
|
||||
allow netmgrd netmgr_data_file:dir rw_dir_perms;
|
||||
allow netmgrd netmgr_data_file:file create_file_perms;
|
||||
allow netmgrd system_file:file execute_no_trans;
|
||||
# TODO(b/117232795): Figure out what is executed by netmgrd in /system and route
|
||||
# that dependency to netutils_wrapper.
|
||||
auditallow netmgrd system_file:file execute_no_trans;
|
||||
|
||||
allow netmgrd self:capability { net_admin net_raw setgid setpcap setuid };
|
||||
|
||||
|
||||
Reference in New Issue
Block a user