rosemary: sepolicy: Fix fingerprint neverallows

* Mark vendor domains using fingerprint data as
  data_between_core_and_vendor_violators

Change-Id: Ic4e68597ace96598d10eb4439949a264aae5d229
This commit is contained in:
Sebastiano Barezzi
2023-03-01 22:54:00 +01:00
committed by Matsvei Niaverau
parent b9edb74e6a
commit c5bbba476d
2 changed files with 4 additions and 0 deletions

View File

@@ -1,3 +1,5 @@
typeattribute hal_fingerprint_default data_between_core_and_vendor_violators;
# Allow fingerprint HAL to read and write fingerprint node
allow hal_fingerprint_default vendor_fingerprint_device:chr_file rw_file_perms;
allow hal_fingerprint_default sysfs_fingerprint:dir r_dir_perms;

View File

@@ -1,3 +1,5 @@
typeattribute vendor_init data_between_core_and_vendor_violators;
get_prop(vendor_init, vts_status_prop)
allow vendor_init vendor_fingerprint_data_file:dir { rw_dir_perms relabelto setattr };