aboutsummaryrefslogtreecommitdiff
path: root/sepolicy/qseecomd.te
diff options
context:
space:
mode:
authorArian <arian.kulmer@web.de>2019-08-20 13:09:47 +0200
committerArian <arian.kulmer@web.de>2019-10-25 22:16:14 +0200
commit884cddf51755fb0b42cba313e2c6d769315013e1 (patch)
tree5e7a02b38b0c2aa36eff88866ced18a71888deac /sepolicy/qseecomd.te
parent82cdab4b1d0ce27465e9dd0a0d154a39a6be23f6 (diff)
shinano-common: sepolicy: clean up
Diffstat (limited to 'sepolicy/qseecomd.te')
-rw-r--r--sepolicy/qseecomd.te6
1 files changed, 0 insertions, 6 deletions
diff --git a/sepolicy/qseecomd.te b/sepolicy/qseecomd.te
index 7e61f6d..e3375cf 100644
--- a/sepolicy/qseecomd.te
+++ b/sepolicy/qseecomd.te
@@ -1,4 +1,3 @@
-
# tee starts as root, and drops privileges
allow tee self:capability {
setuid
@@ -13,11 +12,6 @@ allow tee rpmb_device:blk_file rw_file_perms;
# Provide tee access to ssd partition for HW FDE
allow tee ssd_device:blk_file rw_file_perms;
-# Allow tee to directly save and load fingerprint data
-allow tee fingerprintd_data_file:dir rw_dir_perms;
-allow tee fingerprintd_data_file:file create_file_perms;
-allow tee system_data_file:dir r_dir_perms;
-
# allow tee to load firmware images
r_dir_file(tee, firmware_file)