Merge "label persist partition and grant e2fsck access" into oc-dr1-dev

This commit is contained in:
TreeHugger Robot
2017-07-20 20:14:55 +00:00
committed by Android (Google) Code Review
4 changed files with 4 additions and 1 deletions

View File

@@ -9,6 +9,7 @@ type hbtp_device, dev_type;
type ipa_dev, dev_type;
type latency_device, dev_type;
type modem_block_device, dev_type;
type persist_block_device, dev_type;
type pn81a_device, dev_type;
type qsee_ipc_irq_spss_device, dev_type;
type qdsp_device, dev_type, mlstrustedobject;

View File

@@ -90,7 +90,7 @@
/dev/block/platform/soc/1da4000\.ufshc/by-name/fsg u:object_r:modem_block_device:s0
/dev/block/platform/soc/1da4000\.ufshc/by-name/modem_[ab] u:object_r:modem_block_device:s0
/dev/block/platform/soc/1da4000\.ufshc/by-name/modemst[12] u:object_r:modem_block_device:s0
/dev/block/platform/soc/1da4000\.ufshc/by-name/persist u:object_r:persist_block_device:s0
/dev/block/platform/soc/1da4000\.ufshc/by-name/ramdump u:object_r:ramdump_block_device:s0
/dev/block/platform/soc/1da4000\.ufshc/by-name/ssd u:object_r:ssd_block_device:s0

1
sepolicy/vendor/fsck.te vendored Normal file
View File

@@ -0,0 +1 @@
allow fsck persist_block_device:blk_file rw_file_perms;

View File

@@ -12,5 +12,6 @@ allow init persist_file:dir mounton;
allow init ab_block_device:lnk_file relabelto;
allow init boot_block_device:lnk_file relabelto;
allow init persist_block_device:lnk_file relabelto;
dontaudit init kernel:system module_request;