Commit graph

2220 commits

Author SHA1 Message Date
Tharun Kumar Merugu
0123f7e882 Sepolicy: Add cdsprpcd domain and related permissions
Add cdsprpcd domain and execute permissions.

Change-Id: I2f0dbdfb6842743c765c9e1800a378f981ffaa94
2018-05-22 11:34:20 -07:00
Sridhar Parasuram
1698814b0a Include test folder policies and fix build errors.
Change-Id: I1f8393adced420f2fbf5f36294325f3aeda0285c
2018-05-22 11:06:37 -07:00
Linux Build Service Account
f1c39ec611 Merge "sepolicy: add sepolicies for Codec 2.0" 2018-05-19 00:00:11 -07:00
Yida Wang
e427e6d670 Added device sepolicy rules for NN HAL data files
Change-Id: I102644d08b0cb228f93a792e6a96bd812329574e
2018-05-15 08:37:50 -07:00
Praveen Chavan
1cd2ac7795 sepolicy: add sepolicies for Codec 2.0
Change-Id: Idd3551ba1fc5930bc999f268156d2fed3cb65532
2018-05-15 05:07:29 -07:00
Roopesh Rajashekharaiah Nataraja
ea427803ff Bluetooth: Add support for FR49055
- Cleanup the properties from wcnss_filter
  sepolicy file.

Change-Id: I3175a01861cf2ca697837788daf7a6df1aefb334
2018-05-14 12:33:48 -07:00
Linux Build Service Account
89132dc443 Merge "SEPOLICY: QTI sepolicy change" 2018-05-09 23:53:45 -07:00
Ankit Jain
59a4fe19e8 sepolicy: allow rmt_storage to access sysfs_ssr context with read permission
This changes allow rmt_storage to read file
/sys/bus/msm_subsys/devices/subsys<>/name with sysfs_ssr context.
This is required by libmdmdetect to determine the presence of modem
subsystem at run time.

Change-Id: I29cb0c43cd4f428bfaa42fedb428afe759690fd0
2018-05-08 20:21:20 -07:00
Ankit Jain
2c1abcf12b sepolicy: rmt_storage: remove access to qti_debugfs for rmt_storage
This change removes the access to qti_debugfs file context for
rmt_storage.

Change-Id: I8e92ef3929fbc4cc39bea3a5847f64e6c72b97ed
2018-05-08 20:20:54 -07:00
Mohammed Javid
f0ddb24eec SEPOLICY: QTI sepolicy change
update qti sepolicy to meet new requirement to start vendor.qti binary

Change-Id: Id6b874c509ee516c569c3347648fef0c5a689a0b
2018-05-08 01:00:58 +05:30
Linux Build Service Account
b8460923af Merge "Add selinux rules for update engine" 2018-05-04 11:15:42 -07:00
Linux Build Service Account
3b70493ac0 Merge "Sepolicy: Fix denial for enabling FOSS" 2018-05-03 02:07:30 -07:00
Aravind Asam
0fb021a0a3 Update SE Linux configurations for ss-restart, ss-services
Update property paths to use 'vendor' in name

Change-Id: I40e88096c136d11b1725dc95a5166ebe3bb0f6d1
2018-05-02 14:28:03 -07:00
Rajiv Ranjan
d427d0300f sepolicy: Add rule to enable creating wlan_logs in /data/vendor/wifi
Add wifi_vendor_data_file label and required
sepolicy rule to enable creation of wlan_logs folder
under /data/vendor/wifi.

CRs-Fixed: 2211450
Change-Id: I61516b352c0c6021234d713e4ed3e9c8ccd85855
2018-05-02 10:38:25 +05:30
Smita Ghosh
ebc9b0f138 Add selinux rules for update engine
Change-Id: I12fd72ec526ccd85f68b94f6b1580455484a9925
2018-05-01 10:30:54 -07:00
Brandon
16b4681264 Data IMS: Sepolicy for new HAL to pass SIP headers to Clients
Desc: sepolicy for new HAL

Change-Id: Ie9e4352e820a29bb31f1f9bdff3393151eeaab24
2018-04-28 09:50:21 -07:00
Linux Build Service Account
eba54880d5 Merge "sepolicy: add rules for vendor property" 2018-04-27 23:39:55 -07:00
Linux Build Service Account
edc8d54626 Merge "Clean up usage of set and get prop for system defined properties" 2018-04-27 16:55:40 -07:00
Linux Build Service Account
c6587921b6 Merge "Fix for *radio* property access failure" 2018-04-27 16:55:33 -07:00
Linux Build Service Account
216916d7d6 Merge "sepolicy: Add rule for system app with userdebug tag to access QMI IOCTLs" 2018-04-27 05:36:50 -07:00
Linux Build Service Account
ac377e44b4 Merge "sepolicy: Moved TUI files from /data/misc/qsee to /data/vendor/tui/" 2018-04-26 19:26:49 -07:00
Garmond Leung
256523abaf sepolicy: add rules for vendor property
Support for additional rules related to vendor created properties.

CRs-Fixed: 2213047

Change-Id: I144d21ad43ecb28260b5eb6fc6ce6ad89d970726
2018-04-26 16:04:30 -07:00
Roopesh Rajashekharaiah Nataraja
d80739b61b Fix for *radio* property access failure
Change-Id: Ia60d674d1cf0b70b9027dd05aa61b722e9e2d519
2018-04-26 14:38:37 -07:00
Roopesh Rajashekharaiah Nataraja
e1749913da Clean up usage of set and get prop for system defined properties
Change-Id: I582b523bf44073a156242cd4b5478fee667693cf
2018-04-26 14:27:43 -07:00
Jack Pham
178ef5ae84 sepolicy: allow vendor_init to set vendor_usb_prop
vendor_init needs to be able to setprop vendor.usb.* properties
e.g. init.target.rc.

Change-Id: I0e57a5753cd1fee4788fea3c52e583d6b61d857d
2018-04-26 12:00:06 -07:00
Linux Build Service Account
79214b5ed0 Merge "sepolicy: add vendor prefix to usb properties" 2018-04-26 00:51:11 -07:00
Jack Pham
dfa78468ab sepolicy: add vendor prefix to usb properties
Define property context for vendor.usb.* and allow access to
the same for vendor_init and qti_init_shell. Also remove the
definitions of sys_usb_configfs and sys_usb_controller since
they are redefinitions of the same properties already part of
exported_system_radio_prop and exported2_system_prop and are
already granted to vendor_init and recovery (via coredomain).

Change-Id: Ia394934cb9f34032b95701f768d9ed4e26819ac5
2018-04-25 18:13:18 -07:00
Yida Wang
7156187485 Add device sepolicy rules for NN HAL implementation
Change-Id: I41d761efd3eecc8afd77d073332bfcb62e732145
2018-04-25 13:11:19 -07:00
Linux Build Service Account
845514d40f Merge "FR 48725: Support for new rules related to vendor props" 2018-04-24 17:28:52 -07:00
Linux Build Service Account
4c45db8ab3 Merge "sepolicy: Add rules for data/vendor/camera" 2018-04-24 03:47:34 -07:00
RAJATH R
6b066ab5d8 FR 48725: Support for new rules related to vendor props
- Sepolicy changes required for support for additional
  rules related to vendor created Android properties.

- Sepolicy changes required for new HAL dump
  format

CRs-Fixed: 2227667 2216610
Change-Id: I2fb44a6ea40f669698e4af1eee9b68039f8af6b9
2018-04-23 22:20:24 -07:00
Linux Build Service Account
8ba2bd2776 Merge "qmuxd.te: Remove all references" 2018-04-23 22:12:13 -07:00
Linux Build Service Account
125c260d27 Merge "genfs_context: Add devfreq nodes to sysfs_devfreq" 2018-04-23 22:12:12 -07:00
Linux Build Service Account
5c3e8b886d Merge "Associate proc_wifi_dbg with proc_type" 2018-04-23 17:21:19 -07:00
Sauhard Pande
ee25e09fe8 sepolicy: Add rules for data/vendor/camera
Enabling SE Linux policies for /data/vendor/camera
for filecreate and read permission

Change-Id: I971d74f76461b502911a4fabb2753d7b537845c0
2018-04-23 12:37:06 -07:00
Subash Abhinov Kasiviswanathan
c1d21f4733 netmgrd: add policies for netmgr recovery file
Define a new file context for netmgr recovery
file and add the corresponding SE policy to
allow netmgr access to that file.

CRs-Fixed: 2225495

Change-Id: I051b6d4361a1cef783dd22523c4da3a62ce21065
2018-04-23 12:01:11 -07:00
Subash Abhinov Kasiviswanathan
96650c6637 qmuxd.te: Remove all references
qmuxd is not used on this target, so remove all unused contexts.

CRs-Fixed: 2190092
Change-Id: Ifd92ffe4652e9734f6ea4f8e959c8028979ec6b6
2018-04-23 11:46:47 -07:00
Amit P Choudhari
02a0a16867 sepolicy: Moved TUI files from /data/misc/qsee to /data/vendor/tui/
-Added permissions for accessing the files

Change-Id: Id23cef4caadefae5f0db47e786ca90ad53bf938e
2018-04-23 16:49:45 +05:30
AnilKumar Chimata
7a3817d8ea sepolicy: Change qseecom listener property
Update qseecom listner property to new one by prepending
vendor name to make vendor service.

Change-Id: I49c1525cb34c66b3e9592e5d226301a01ad2e4b6
2018-04-21 03:02:11 +05:30
Shaikh Shadul
1478bd6caf sepolicy: Add rule for system app with userdebug tag to access QMI IOCTLs
Add rule to access system app with userdebug tag to create socket and
access QMI IOCTLs.

Change-Id: I219e5402957ae642f60c05de230aa7cec1cc076c
2018-04-20 15:41:05 +05:30
Kyle Yan
cb639e3cd0 genfs_context: Add devfreq nodes to sysfs_devfreq
Postboot accesses multiple devfreq device nodes so label them under
sysfs_devfreq to allow reads/writes.

Change-Id: Ife684c4568bf01a002dde4591cfeb833bbda922b
2018-04-18 17:06:26 -07:00
Gurpreet Singh Dhami
2c9bc314c2 Sepolicy: Fix denial for enabling FOSS
Change-Id: I9bcf57483693f1b1f55a38ff04d7cfe3fa978f65
2018-04-18 13:58:38 -04:00
Srinivas Narne
55d7d09c18 Associate proc_wifi_dbg with proc_type
Associate proc_wifi_dbg with proc_type
Remove IOffloadConfig, IOffloadConrol to fix bootup

Change-Id: I0a69a16be10b391461b75ce8c84eebf42279c40a
2018-04-17 17:28:37 -07:00
Linux Build Service Account
fc274251e1 Merge "sepolicy: Configure hbtp jnis as same hal process" 2018-04-17 14:27:26 -07:00
Alex Sarraf
828b8cf30f sepolicy: Configure hbtp jnis as same hal process
Configure hbtp jnis as same hal process

Change-Id: Ic69c565684b5942dc13002080c2234499141f5ad
2018-04-16 11:22:41 -07:00
Linux Build Service Account
22d100716d Merge "sepolicy: Add rule to create socket and access QMI IOCTLs" 2018-04-14 22:51:47 -07:00
Alex Sarraf
83f81f1576 sepolicy: allow ctl property set for vendor.hbtp
allow ctl property set for vendor.hbtp service to be launched by
vendor init process

Change-Id: I117947396a853f1c18febbc8979da47103354e1d
2018-04-13 16:34:08 -07:00
Linux Build Service Account
7e6f2aace5 Merge "sepolicy: Changes to enable FOSS" 2018-04-12 17:27:29 -07:00
Linux Build Service Account
c4da84a699 Merge "Allow xtra-daemon to communicate with hal_gnss" 2018-04-12 13:20:25 -07:00
Linux Build Service Account
13760e26e2 Merge "Remove wifi_data_file from data_between_core_and_vendor_violators" 2018-04-12 09:29:44 -07:00