From e71788e0252813c01fa42ac50ba3f18381f4ef12 Mon Sep 17 00:00:00 2001 From: Albert I Date: Wed, 7 Jul 2021 04:30:48 +0800 Subject: [PATCH] sm6375-common: sepolicy: Allow apps and camera HAL access to secure ADSP domain Signed-off-by: Albert I Change-Id: Ibb1071299632ab53726638dbcc134d4bca59fc52 --- sepolicy/vendor/app.te | 1 + sepolicy/vendor/hal_camera_default.te | 1 + 2 files changed, 2 insertions(+) diff --git a/sepolicy/vendor/app.te b/sepolicy/vendor/app.te index 54eb778..7911162 100644 --- a/sepolicy/vendor/app.te +++ b/sepolicy/vendor/app.te @@ -3,3 +3,4 @@ get_prop({ appdomain -isolated_app }, vendor_tee_listener_prop) allow { appdomain -isolated_app } adsprpcd_file:dir r_dir_perms; allow { appdomain -isolated_app } public_adsprpcd_file:file r_file_perms; +allow { appdomain -isolated_app } vendor_xdsp_device:chr_file r_file_perms; diff --git a/sepolicy/vendor/hal_camera_default.te b/sepolicy/vendor/hal_camera_default.te index cbca59c..95c6257 100644 --- a/sepolicy/vendor/hal_camera_default.te +++ b/sepolicy/vendor/hal_camera_default.te @@ -2,3 +2,4 @@ r_dir_file(hal_camera_default, camera_persist_file) set_prop(hal_camera_default, vendor_camera_sensor_prop) allow hal_camera_default public_adsprpcd_file:file r_file_perms; +allow hal_camera_default vendor_xdsp_device:chr_file r_file_perms;