[ALPS03890586] add rules for aee_aed

[Detail]
Add selinux rules for aed in eng/userdebug:
capability dac_override/dac_read_search

MTK-Commit-Id: d3cb23b65eb02f7b4d57d818f0bfd617b96387ed

Change-Id: Ie4e7efe212913aa7cbfb12aa471b911fbabcdae0
CR-Id: ALPS03890586
Feature: Android Exception Engine(AEE)
This commit is contained in:
Ji Zhang 2020-01-18 09:50:50 +08:00
parent 042172187a
commit e7cd43c12c

View File

@ -144,5 +144,7 @@ allow aee_aed self:capability { sys_nice chown fowner};
# Purpose: Allow aee_aed to write /sys/kernel/debug/tracing/snapshot # Purpose: Allow aee_aed to write /sys/kernel/debug/tracing/snapshot
userdebug_or_eng(`allow aee_aed debugfs_tracing_debug:file { write open };') userdebug_or_eng(`allow aee_aed debugfs_tracing_debug:file { write open };')
# Purpose: Allow aee_aed self to sys_ptrace # Purpose: Allow aee_aed self to sys_ptrace/dac_override/dac_read_search
userdebug_or_eng(`allow aee_aed self:capability sys_ptrace;') userdebug_or_eng(`
allow aee_aed self:capability { sys_ptrace dac_override dac_read_search };
')