From 0892f48f2f454ec19517c5b57b5836974b4483c3 Mon Sep 17 00:00:00 2001 From: tilaksidduram Date: Thu, 19 Nov 2015 23:27:29 +0530 Subject: n7100: remove selinux --- BoardConfig.mk | 17 ----------------- selinux/device.te | 3 --- selinux/domain.te | 2 -- selinux/file.te | 5 ----- selinux/file_contexts | 42 ------------------------------------------ selinux/init.te | 1 - selinux/mediaserver.te | 8 -------- selinux/rild.te | 7 ------- selinux/system.te | 11 ----------- selinux/ueventd.te | 6 ------ selinux/vold.te | 2 -- selinux/wpa_supplicant.te | 10 ---------- 12 files changed, 114 deletions(-) delete mode 100644 selinux/device.te delete mode 100644 selinux/domain.te delete mode 100644 selinux/file.te delete mode 100644 selinux/file_contexts delete mode 100644 selinux/init.te delete mode 100644 selinux/mediaserver.te delete mode 100644 selinux/rild.te delete mode 100644 selinux/system.te delete mode 100644 selinux/ueventd.te delete mode 100644 selinux/vold.te delete mode 100755 selinux/wpa_supplicant.te diff --git a/BoardConfig.mk b/BoardConfig.mk index 87d0aaa..2f87c38 100644 --- a/BoardConfig.mk +++ b/BoardConfig.mk @@ -47,20 +47,3 @@ RECOVERY_FSTAB_VERSION := 2 # Compatibility with pre-kitkat Sensor HALs SENSORS_NEED_SETRATE_ON_ENABLE := true - -# Selinux -BOARD_SEPOLICY_DIRS += \ - device/samsung/n7100/selinux - -BOARD_SEPOLICY_UNION += \ - device.te \ - domain.te \ - file.te \ - file_contexts \ - init.te \ - mediaserver.te \ - rild.te \ - system.te \ - ueventd.te \ - vold.te \ - wpa_supplicant.te diff --git a/selinux/device.te b/selinux/device.te deleted file mode 100644 index cca8ee1..0000000 --- a/selinux/device.te +++ /dev/null @@ -1,3 +0,0 @@ -type mali_device, dev_type, mlstrustedobject; -type rfkill_device, dev_type; -type efs_block_device, dev_type; diff --git a/selinux/domain.te b/selinux/domain.te deleted file mode 100644 index 26e8033..0000000 --- a/selinux/domain.te +++ /dev/null @@ -1,2 +0,0 @@ -## /dev/mali, /dev/ump -allow domain mali_device:chr_file rw_file_perms; diff --git a/selinux/file.te b/selinux/file.te deleted file mode 100644 index facc492..0000000 --- a/selinux/file.te +++ /dev/null @@ -1,5 +0,0 @@ -type firmware_mfc, file_type; -type firmware_camera, file_type; - -type sensors_data_file, file_type, data_file_type; -type volume_data_file, file_type, data_file_type; diff --git a/selinux/file_contexts b/selinux/file_contexts deleted file mode 100644 index 85bda40..0000000 --- a/selinux/file_contexts +++ /dev/null @@ -1,42 +0,0 @@ -# GFX -/dev/mali u:object_r:mali_device:s0 -/dev/ump u:object_r:mali_device:s0 -/dev/fimg2d u:object_r:mali_device:s0 - -# RIL -/dev/umts_boot0 u:object_r:radio_device:s0 -/dev/umts_csd u:object_r:radio_device:s0 -/dev/umts_ipc0 u:object_r:radio_device:s0 -/dev/umts_loopback0 u:object_r:radio_device:s0 -/dev/umts_ramdump0 u:object_r:radio_device:s0 -/dev/umts_rfs0 u:object_r:radio_device:s0 -/dev/umts_router u:object_r:radio_device:s0 - -/dev/block/mmcblk0p10 u:object_r:efs_block_device:s0 - -# Camera -/data/ISP_CV u:object_r:camera_data_file:s0 -/dev/exynos-mem u:object_r:video_device:s0 - -# Bluetooth -/dev/ttySAC0 u:object_r:hci_attach_dev:s0 -/efs/bluetooth/(/.*)? u:object_r:bluetooth_efs_file:s0 - -# GPS -/dev/ttySAC1 u:object_r:gps_device:s0 - -# Sensors -/dev/akm8975 u:object_r:sensors_device:s0 -/efs/gyro_cal_data u:object_r:sensors_data_file:s0 - -# Wifi -/dev/rfkill u:object_r:rfkill_device:s0 -/efs/wifi/.mac.info u:object_r:wifi_data_file:s0 - -# Firmwares -/system/vendor/firmware(/.*)? u:object_r:firmware_camera:s0 -/system/vendor/firmware/mfc_fw.bin u:object_r:firmware_mfc:s0 -/data/cfw(/.*)? u:object_r:firmware_camera:s0 - -# Vibrator -/dev/tspdrv u:object_r:input_device:s0 diff --git a/selinux/init.te b/selinux/init.te deleted file mode 100644 index 3f11893..0000000 --- a/selinux/init.te +++ /dev/null @@ -1 +0,0 @@ -allow init wpa_socket:unix_dgram_socket { bind create }; diff --git a/selinux/mediaserver.te b/selinux/mediaserver.te deleted file mode 100644 index 7cc911c..0000000 --- a/selinux/mediaserver.te +++ /dev/null @@ -1,8 +0,0 @@ -allow mediaserver { firmware_camera }:file r_file_perms; -allow mediaserver firmware_camera:dir r_dir_perms; -allow mediaserver camera_data_file:file rw_file_perms; -allow mediaserver volume_data_file:file create_file_perms; -allow mediaserver volume_data_file:dir create_dir_perms; - -# Bluetooth audio -allow mediaserver bluetooth:unix_stream_socket { connectto }; diff --git a/selinux/rild.te b/selinux/rild.te deleted file mode 100644 index 7f817d0..0000000 --- a/selinux/rild.te +++ /dev/null @@ -1,7 +0,0 @@ -allow rild self:netlink_socket { create bind read write }; -allow rild self:netlink_route_socket { write }; -allow rild self:netlink_kobject_uevent_socket { create bind read write setopt }; - -allow rild radio_device:chr_file rw_file_perms; -allow rild efs_block_device:blk_file rw_file_perms; -allow rild efs_file:file { read open write setattr }; diff --git a/selinux/system.te b/selinux/system.te deleted file mode 100644 index 4ea6c98..0000000 --- a/selinux/system.te +++ /dev/null @@ -1,11 +0,0 @@ -allow system_server input_device:chr_file { read ioctl write open }; -allow system_server sensors_device:chr_file { read open }; -allow system_server sensors_data_file:file r_file_perms; -allow system_server wpa_socket:unix_dgram_socket sendto; -allow system_app volume_data_file:file { read write open getattr }; - -allow system_server sysfs:file { read open write }; -allow system_server self:capability { sys_module }; - -# /efs/wifi/.mac.info -allow system_server wifi_data_file:file { read open }; diff --git a/selinux/ueventd.te b/selinux/ueventd.te deleted file mode 100644 index 1ed58dc..0000000 --- a/selinux/ueventd.te +++ /dev/null @@ -1,6 +0,0 @@ -# MFC firmware -allow ueventd { firmware_mfc }:file r_file_perms; - -# Camera related firmwares -allow ueventd { firmware_camera }:dir search; -allow ueventd { firmware_camera }:file r_file_perms; diff --git a/selinux/vold.te b/selinux/vold.te deleted file mode 100644 index 9452abf..0000000 --- a/selinux/vold.te +++ /dev/null @@ -1,2 +0,0 @@ -allow vold kernel:process setsched; -allow vold sdcardd_exec:file { read open execute execute_no_trans }; diff --git a/selinux/wpa_supplicant.te b/selinux/wpa_supplicant.te deleted file mode 100755 index c438b88..0000000 --- a/selinux/wpa_supplicant.te +++ /dev/null @@ -1,10 +0,0 @@ -allow wpa init:unix_dgram_socket { read write }; - -# logwrapper used with wpa_supplicant -allow wpa devpts:chr_file { read write }; - -allow wpa wpa_socket:unix_dgram_socket { read write }; -allow wpa_socket system_server:unix_dgram_socket sendto; - -allow wpa_socket wifi_data_file:sock_file unlink; -allow wpa rfkill_device:chr_file rw_file_perms; -- cgit v1.1