Some rules is no need any more, need to remove it. MTK-Commit-Id: 49685f1299d990a7195a2d54b955517d8f2cc699 Change-Id: I4a590ad781589cf94989ce72c88751ac10b82eae CR-Id: ALPS03982747 Feature: [Android Default] SELinux, SEAndroid, and SE-MTK
34 lines
1.2 KiB
Plaintext
34 lines
1.2 KiB
Plaintext
# ==============================================
|
|
# Policy File of /system/bin/biosensord_nvram Executable File
|
|
|
|
# ==============================================
|
|
# Type Declaration
|
|
# ==============================================
|
|
type biosensord_nvram ,domain;
|
|
type biosensord_nvram_exec , exec_type, file_type, vendor_file_type;
|
|
type biosensord_nvram_file, file_type, data_file_type;
|
|
|
|
# ==============================================
|
|
# Android Policy Rule
|
|
# ==============================================
|
|
|
|
# ==============================================
|
|
# NSA Policy Rule
|
|
# ==============================================
|
|
|
|
# ==============================================
|
|
# MTK Policy Rule
|
|
# ==============================================
|
|
|
|
init_daemon_domain(biosensord_nvram)
|
|
|
|
# Data : WK16.21
|
|
# Operation : New Feature
|
|
# Purpose : For biosensor daemon can do nvram r/w to save calibration data
|
|
allow biosensord_nvram nvdata_file:dir rw_dir_perms;
|
|
allow biosensord_nvram nvdata_file:file {rw_file_perms create_file_perms};
|
|
allow biosensord_nvram nvram_data_file:lnk_file rw_file_perms;
|
|
allow biosensord_nvram biometric_device:chr_file { open ioctl read write };
|
|
allow biosensord_nvram self:capability { chown fsetid };
|
|
allow biosensord_nvram system_data_file:lnk_file read;
|