diff options
author | Roberto Gibellini <gibellini.roberto@gmail.com> | 2016-11-19 17:21:50 -0700 |
---|---|---|
committer | Gerrit Code Review <gerrit@cyanogenmod.org> | 2016-11-19 16:36:52 -0800 |
commit | f2a3063bc88ee0a075c04fa274c10c39c7abfc9b (patch) | |
tree | 0042544658ce6961403f6eac79ca6217b8efc5cc /selinux/secril.te | |
parent | b8ca7e9e41daaab93c33b136dd8f238606bf9352 (diff) | |
download | device_samsung_i9305-f2a3063bc88ee0a075c04fa274c10c39c7abfc9b.zip device_samsung_i9305-f2a3063bc88ee0a075c04fa274c10c39c7abfc9b.tar.gz device_samsung_i9305-f2a3063bc88ee0a075c04fa274c10c39c7abfc9b.tar.bz2 |
Revert "i9305 : second cleanup"
I'll push single commits
This reverts commit 2f6c7f36412046bd8b67ffbf511ffa74d7cc6842.
Change-Id: I147666b0637e2950612653ad680b7a1f33e173f0
Diffstat (limited to 'selinux/secril.te')
-rw-r--r-- | selinux/secril.te | 25 |
1 files changed, 25 insertions, 0 deletions
diff --git a/selinux/secril.te b/selinux/secril.te new file mode 100644 index 0000000..7761d80 --- /dev/null +++ b/selinux/secril.te @@ -0,0 +1,25 @@ +# sec-ril +type secril-daemon, domain; +type secril-daemon_exec, exec_type, file_type; + +# Start /system/bin/sec-ril from init +init_daemon_domain(secril-daemon) + +allow secril-daemon secril-daemon_exec:file { open execute_no_trans getattr }; +allow secril-daemon self:udp_socket { create ioctl }; +unix_socket_connect(secril-daemon, property, init) +unix_socket_connect(secril-daemon, rild, rild) + +allow secril-daemon { efs_file }:file rw_file_perms; +allow secril-daemon system_data_file:dir create_dir_perms; +allow secril-daemon system_data_file:file unlink; +allow secril-daemon radio_data_file:file { create_file_perms }; +allow secril-daemon kernel:system module_request; +allow secril-daemon self:capability { sys_module fsetid setuid setgid net_admin net_raw dac_override }; +allow secril-daemon system_file:file x_file_perms; +allow secril-daemon sysfs:file rw_file_perms; +allow secril-daemon shell_exec:file rx_file_perms; +allow secril-daemon app_data_file:file rw_file_perms; +allow secril-daemon app_data_file:dir search; +allow secril-daemon zygote_exec:file rx_file_perms; +allow secril-daemon ashmem_device:chr_file x_file_perms;
\ No newline at end of file |