aboutsummaryrefslogtreecommitdiffstats
path: root/selinux/init.te
diff options
context:
space:
mode:
Diffstat (limited to 'selinux/init.te')
-rw-r--r--selinux/init.te25
1 files changed, 5 insertions, 20 deletions
diff --git a/selinux/init.te b/selinux/init.te
index 892872c..9e53753 100644
--- a/selinux/init.te
+++ b/selinux/init.te
@@ -1,20 +1,5 @@
-allow init wpa_socket:unix_dgram_socket { bind create };
-allow init init:process { execmem };
-allow init init:tcp_socket { read write create };
-allow init port:tcp_socket name_connect;
-allow init self:tcp_socket { read write getopt connect };
-allow init kernel:system syslog_read;
-allow init input_device:chr_file ioctl;
-allow init system_data_file:file lock;
-allow init fwmarkd_socket:sock_file write;
-allow init netd:unix_stream_socket { connectto write };
-allow init ril_device:chr_file ioctl;
-allow init input_device:chr_file write;
-allow init property_socket:sock_file write;
-allow init device:chr_file { create unlink };
-allow init devpts:chr_file { getattr ioctl };
-allow init kernel:system module_request;
-allow init log_device:chr_file write;
-allow init ril_device:chr_file write;
-allow init rild:unix_stream_socket connectto;
-allow init system_data_file:fifo_file write;
+allow init debugfs:dir mounton;
+allow init sysfs:lnk_file setattr;
+allow init tmpfs:lnk_file create;
+# load SHIM libraries
+allow init rild:process noatsecure;