diff options
author | Arian <arian.kulmer@web.de> | 2020-12-11 00:07:18 +0100 |
---|---|---|
committer | Arian <arian.kulmer@web.de> | 2020-12-21 19:20:35 +0100 |
commit | f12ef27cb9fc9f9cda9078230c5ab5b4ce0d4d93 (patch) | |
tree | 6578430d6f24122fc5904c34220cb205345ba28a /sepolicy/qseecomd.te | |
parent | d3c930897d2429bedcfbd713dae369b53840f97b (diff) |
shinano-common: Cleanup sepolicy
Change-Id: If615758376413b16fcc80addd03a9ba5cd388e8a
Diffstat (limited to 'sepolicy/qseecomd.te')
-rw-r--r-- | sepolicy/qseecomd.te | 23 |
1 files changed, 0 insertions, 23 deletions
diff --git a/sepolicy/qseecomd.te b/sepolicy/qseecomd.te deleted file mode 100644 index e3375cf..0000000 --- a/sepolicy/qseecomd.te +++ /dev/null @@ -1,23 +0,0 @@ -# tee starts as root, and drops privileges -allow tee self:capability { - setuid - setgid -}; - -# Need to directly manipulate certain block devices -# for anti-rollback protection -allow tee block_device:dir r_dir_perms; -allow tee rpmb_device:blk_file rw_file_perms; - -# Provide tee access to ssd partition for HW FDE -allow tee ssd_device:blk_file rw_file_perms; - -# allow tee to load firmware images -r_dir_file(tee, firmware_file) - -binder_use(tee) - -# Provide tee ability to access QMUXD/IPCRouter for QMI -qmux_socket(tee); - -set_prop(tee, tee_prop) |