From fcd8270a039933b372a859d36acafd6d484bfed5 Mon Sep 17 00:00:00 2001 From: Max Weffers Date: Sat, 7 Oct 2017 20:11:39 +0200 Subject: shinano: Import hci attach.te Change-Id: Ie6d0fdba3a2c06e5d2852a41c0c84ca1f65f7b07 --- sepolicy/hci_attach.te | 16 ++++++++++++++++ sepolicy/uim.te | 1 + 2 files changed, 17 insertions(+) create mode 100644 sepolicy/hci_attach.te (limited to 'sepolicy') diff --git a/sepolicy/hci_attach.te b/sepolicy/hci_attach.te new file mode 100644 index 0000000..3d57abe --- /dev/null +++ b/sepolicy/hci_attach.te @@ -0,0 +1,16 @@ +type hci_attach, domain; +type hci_attach_exec, exec_type, file_type; + +init_daemon_domain(hci_attach) + +set_prop(hci_attach, wifi_prop) + +#============= hci_attach ============== +allow hci_attach bluetooth_data_file:dir search; +allow hci_attach bluetooth_data_file:file r_file_perms; +allow hci_attach bluetooth_prop:property_service set; +allow hci_attach hci_attach_dev:chr_file rw_file_perms; +allow hci_attach hci_attach_exec:file execute_no_trans; +allow hci_attach shell_exec:file { entrypoint getattr read }; +allow hci_attach system_file:file execute_no_trans; +allow hci_attach toolbox_exec:file rx_file_perms; diff --git a/sepolicy/uim.te b/sepolicy/uim.te index 97ce954..c452704 100644 --- a/sepolicy/uim.te +++ b/sepolicy/uim.te @@ -11,3 +11,4 @@ allow uim rootfs:lnk_file getattr; allow uim ta_data_file:dir search; allow uim bluetooth_prop:sock_file write; allow uim ta_data_file:file r_file_perms; +allow uim hci_attach_dev:chr_file ioctl; -- cgit v1.2.3