From 3977f65b1374e3365f69695771afe886165564d6 Mon Sep 17 00:00:00 2001 From: Luden Date: Thu, 17 Mar 2016 20:19:12 +0000 Subject: Implemented SELinux rules for tuna. Change-Id: I0c82e620532cf968341cc8c5d268aa0788ebb94f --- sepolicy/tee.te | 8 ++++++++ 1 file changed, 8 insertions(+) create mode 100644 sepolicy/tee.te (limited to 'sepolicy/tee.te') diff --git a/sepolicy/tee.te b/sepolicy/tee.te new file mode 100644 index 0000000..59e7894 --- /dev/null +++ b/sepolicy/tee.te @@ -0,0 +1,8 @@ +# tee_data_file cannot be used as it has data_file_type, +# which triggers 'neverallow' for 'recovery' domain. +type tee_file, file_type; + +allow tee unlabeled:dir search; +allow tee tee_file:dir rw_dir_perms; +allow tee tee_file:file create_file_perms; +allow tee labeledfs:filesystem associate; -- cgit v1.1