From 72fa12db3ce4841a1579f0b075601bba3dbf3d43 Mon Sep 17 00:00:00 2001 From: bohu Date: Wed, 14 Feb 2018 15:34:47 -0800 Subject: [PATCH] emulator: grant fingerprint hal data permission Test: build sdk_gphone_x86-userdebug launch emulator, enroll fingerprint, close emulator relaunch emulator, check previously enrolled fingerprint still work Change-Id: I27552509368f08cc6a7aa52b0e9efc5ae952469d --- target/board/generic/sepolicy/hal_fingerprint_default.te | 5 +++++ 1 file changed, 5 insertions(+) create mode 100644 target/board/generic/sepolicy/hal_fingerprint_default.te diff --git a/target/board/generic/sepolicy/hal_fingerprint_default.te b/target/board/generic/sepolicy/hal_fingerprint_default.te new file mode 100644 index 0000000000..e5b06f12de --- /dev/null +++ b/target/board/generic/sepolicy/hal_fingerprint_default.te @@ -0,0 +1,5 @@ +# TODO(b/36644492): Remove data_between_core_and_vendor_violators once +# hal_fingerprint no longer directly accesses fingerprintd_data_file. +typeattribute hal_fingerprint_default data_between_core_and_vendor_violators; +allow hal_fingerprint_default fingerprintd_data_file:file create_file_perms; +allow hal_fingerprint_default fingerprintd_data_file:dir rw_dir_perms;