From e27f8228a5792a7f8a81f1159d504dcd81334cec Mon Sep 17 00:00:00 2001 From: "Ranjan, Rajani" Date: Fri, 25 Aug 2023 13:37:24 +0530 Subject: [PATCH] sepolicy Signed-off-by: Ranjan, Rajani --- aafd/logwrapper.te | 1 + aafd/property.te | 1 + aafd/property_contexts | 1 + aafd/vendor_init.te | 1 + sensors/mediation/sensor_hal_default.te | 1 + 5 files changed, 5 insertions(+) diff --git a/aafd/logwrapper.te b/aafd/logwrapper.te index c39f7f66..1b3d29af 100644 --- a/aafd/logwrapper.te +++ b/aafd/logwrapper.te @@ -24,3 +24,4 @@ set_prop(logwrapper, vendor_intel_ipaddr_prop) set_prop(logwrapper, vendor_graphics_gles_prop) set_prop(logwrapper, vendor_media_target_prop) set_prop(logwrapper, vendor_display_prop) +set_prop(logwrapper, vendor_virtual_device_prop) diff --git a/aafd/property.te b/aafd/property.te index 0a23d7f0..f22d5791 100644 --- a/aafd/property.te +++ b/aafd/property.te @@ -5,3 +5,4 @@ vendor_internal_prop(vendor_usb_controller_prop) vendor_internal_prop(vendor_fixed_perf_prop) vendor_internal_prop(vendor_mount_ep0_prop) vendor_internal_prop(vendor_display_prop) +vendor_internal_prop(vendor_virtual_device_prop) diff --git a/aafd/property_contexts b/aafd/property_contexts index cbea81c5..a85ce9f7 100755 --- a/aafd/property_contexts +++ b/aafd/property_contexts @@ -8,3 +8,4 @@ vendor.usb.controller u:object_r:vendor_usb_controller_prop:s0 vendor.power.fixed_performance_scale_factor u:object_r:vendor_fixed_perf_prop:s0 vendor.mount.ep0 u:object_r:vendor_mount_ep0_prop:s0 vendor.sys.display.size u:object_r:vendor_display_prop:s0 +vendor.virtual.device u:object_r:vendor_virtual_device_prop:s0 diff --git a/aafd/vendor_init.te b/aafd/vendor_init.te index 0f7e1e32..f46b976e 100644 --- a/aafd/vendor_init.te +++ b/aafd/vendor_init.te @@ -7,6 +7,7 @@ set_prop(vendor_init, vendor_usb_controller_prop) get_prop(vendor_init, vendor_fixed_perf_prop) get_prop(vendor_init, vendor_media_target_prop) set_prop(vendor_init, vendor_display_prop) +set_prop(vendor_init, vendor_virtual_device_prop) #============= vendor_init ============== allow vendor_init tmpfs:dir { add_name create write }; set_prop(vendor_init, vendor_mount_ep0_prop) diff --git a/sensors/mediation/sensor_hal_default.te b/sensors/mediation/sensor_hal_default.te index bc2c23be..a484c28a 100644 --- a/sensors/mediation/sensor_hal_default.te +++ b/sensors/mediation/sensor_hal_default.te @@ -5,3 +5,4 @@ allowxperm hal_sensors_default self:socket ioctl unpriv_sock_ioctls; allow hal_sensors_default serial_device:chr_file rw_file_perms; allow hal_sensors_default self:vsock_socket { create read write connect getopt setopt }; +get_prop(hal_sensors_default, vendor_virtual_device_prop)