Merge "[ALPS03897470] Fix SEPolicy violation" into alps-trunk-p0.basic
Change-Id: Ie1a0d05e2f5d134316bb63bc38e1720324568e82 MTK-Commit-Id: b42cd8dd4a3e60e3be509ad8dc2c273a6f5bb850
This commit is contained in:
commit
cee97683c3
@ -20,16 +20,9 @@ type stp_dump3 ,domain;
|
|||||||
# ==============================================
|
# ==============================================
|
||||||
# MTK Policy Rule
|
# MTK Policy Rule
|
||||||
# ==============================================
|
# ==============================================
|
||||||
file_type_auto_trans(stp_dump3,system_data_file,stp_dump_data_file)
|
|
||||||
#allow stp_dump3 self:capability { net_admin fowner chown fsetid dac_override };
|
#allow stp_dump3 self:capability { net_admin fowner chown fsetid dac_override };
|
||||||
allow stp_dump3 self:netlink_socket { read write getattr bind create setopt };
|
allow stp_dump3 self:netlink_socket { read write getattr bind create setopt };
|
||||||
allow stp_dump3 self:netlink_generic_socket { read write getattr bind create setopt };
|
allow stp_dump3 self:netlink_generic_socket { read write getattr bind create setopt };
|
||||||
#allow stp_dump3 media_rw_data_file:sock_file { write create unlink setattr };
|
|
||||||
typeattribute stp_dump3 data_between_core_and_vendor_violators;
|
|
||||||
allow stp_dump3 media_rw_data_file:dir { add_name setattr };
|
|
||||||
allow stp_dump3 media_rw_data_file:dir rmdir;
|
|
||||||
allow stp_dump3 media_rw_data_file:dir { open read write create setattr getattr add_name remove_name search};
|
|
||||||
allow stp_dump3 media_rw_data_file:file { open read write create setattr getattr append unlink rename};
|
|
||||||
allow stp_dump3 wmtdetect_device:chr_file { read write ioctl open };
|
allow stp_dump3 wmtdetect_device:chr_file { read write ioctl open };
|
||||||
allow stp_dump3 stpwmt_device:chr_file { read write ioctl open };
|
allow stp_dump3 stpwmt_device:chr_file { read write ioctl open };
|
||||||
allow stp_dump3 tmpfs:lnk_file r_file_perms;
|
allow stp_dump3 tmpfs:lnk_file r_file_perms;
|
||||||
|
Loading…
x
Reference in New Issue
Block a user