From 5e5f8eff286805facff6687af4415c16d4b0554e Mon Sep 17 00:00:00 2001 From: Max Bires Date: Tue, 7 Feb 2017 13:37:18 -0800 Subject: [PATCH] Added sensors_device file context for /dev/sensors. Addressed following denial on generic device that needed to be relabeled: avc: denied { ioctl } for pid=711 comm="sensors.qcom" path="/dev/sensors" dev="tmpfs" ino=22661 ioctlcmd=6403 scontext=u:r:sensors:s0 tcontext=u:object_r:device:s0 tclass=chr_file Bug: 34784662 Test: Above denial no longer present in bootup logs Change-Id: I2738a90422fc0cd5075414b0bdc466535aecde82 --- sepolicy/file_contexts | 1 + 1 file changed, 1 insertion(+) diff --git a/sepolicy/file_contexts b/sepolicy/file_contexts index 1e6bbc7..0bef9f3 100644 --- a/sepolicy/file_contexts +++ b/sepolicy/file_contexts @@ -26,6 +26,7 @@ /dev/hbtp_input u:object_r:hbtp_device:s0 /dev/hbtp_vm u:object_r:hbtp_device:s0 /dev/sg[0-9]+ u:object_r:sg_device:s0 +/dev/sensors u:object_r:sensors_device:s0 # dev socket nodes /dev/socket/qmux_audio(/.*)? u:object_r:qmuxd_socket:s0