allow keystore tee_device:chr_file rw_file_perms; allow keystore firmware_file:file r_file_perms; allow keystore tee_prop:file { getattr open read }; allow vold keystore:keystore_key { get_state get insert delete exist list sign verify }; auditallow vold keystore:keystore_key { get_state get insert delete exist list sign verify };