diff --git a/sepolicy/vendor/hal_bootctl.te b/sepolicy/vendor/hal_bootctl.te index e5ebb89a..2c9e49ef 100644 --- a/sepolicy/vendor/hal_bootctl.te +++ b/sepolicy/vendor/hal_bootctl.te @@ -22,13 +22,10 @@ allow hal_bootctl tmpfs:lnk_file r_file_perms; # Read the sysfs to lookup what /dev/sgN device # corresponds to the XBL partitions. -allow hal_bootctl sysfs:dir r_dir_perms; +allow hal_bootctl sysfs_type:dir r_dir_perms; # Write to the XBL devices. allow hal_bootctl xbl_block_device:blk_file rw_file_perms; # Expose a socket for brokered boot message access for hal_oemlock. allow hal_bootctl hal_bootctl_socket:sock_file create_file_perms; - -allow hal_bootctl sysfs_scsi_devices_other:dir r_dir_perms; -allow hal_bootctl sysfs_scsi_devices_other:file r_file_perms;