summaryrefslogtreecommitdiffstats
path: root/sepolicy
diff options
context:
space:
mode:
authorRicardo Cerqueira <ricardo@cyngn.com>2014-11-05 18:22:50 +0000
committerRicardo Cerqueira <ricardo@cyngn.com>2014-11-06 14:54:32 +0000
commit49a30e7d179d4e529c0f79b637a4f69e43430f82 (patch)
tree03d1820db5cc7755bcdfa182d4f6df6fbc218c75 /sepolicy
parent518514580a21ee4e51fe6364728bf94839ace431 (diff)
downloadvendor_replicant-49a30e7d179d4e529c0f79b637a4f69e43430f82.zip
vendor_replicant-49a30e7d179d4e529c0f79b637a4f69e43430f82.tar.gz
vendor_replicant-49a30e7d179d4e529c0f79b637a4f69e43430f82.tar.bz2
Updates for CM12
Diffstat (limited to 'sepolicy')
-rw-r--r--sepolicy/fs_use3
-rw-r--r--sepolicy/sepolicy.mk1
-rw-r--r--sepolicy/system.te2
-rw-r--r--sepolicy/vold.te3
4 files changed, 2 insertions, 7 deletions
diff --git a/sepolicy/fs_use b/sepolicy/fs_use
deleted file mode 100644
index 2001c9c..0000000
--- a/sepolicy/fs_use
+++ /dev/null
@@ -1,3 +0,0 @@
-# Label inodes via getxattr.
-fs_use_xattr f2fs u:object_r:labeledfs:s0;
-
diff --git a/sepolicy/sepolicy.mk b/sepolicy/sepolicy.mk
index a469015..45792a1 100644
--- a/sepolicy/sepolicy.mk
+++ b/sepolicy/sepolicy.mk
@@ -9,7 +9,6 @@ BOARD_SEPOLICY_DIRS += \
BOARD_SEPOLICY_UNION += \
file.te \
file_contexts \
- fs_use \
genfs_contexts \
seapp_contexts \
installd.te \
diff --git a/sepolicy/system.te b/sepolicy/system.te
index acf8fed..4c6de38 100644
--- a/sepolicy/system.te
+++ b/sepolicy/system.te
@@ -1 +1 @@
-allow system wallpaper_file:file relabelto;
+allow system_server wallpaper_file:file relabelto;
diff --git a/sepolicy/vold.te b/sepolicy/vold.te
index 3082575..ae52a5f 100644
--- a/sepolicy/vold.te
+++ b/sepolicy/vold.te
@@ -2,9 +2,8 @@
allow vold sdcard_external:file create_file_perms;
# Allow vold to change context for mounted ext4 sdcard
-relabelto_domain(vold)
allow vold labeledfs:filesystem { relabelfrom };
-allow vold sdcard_external:filesystem { relabelfrom relabelto };
+allow vold sdcard_external:filesystem { relabelfrom };
# Allow vold to access fuse for fuse-based fs
allow vold fuse_device:chr_file rw_file_perms;