2012-01-04 18:33:27 +01:00
|
|
|
# rild - radio interface layer daemon
|
2017-01-20 21:49:35 +01:00
|
|
|
type rild, domain, domain_deprecated;
|
2017-03-17 02:48:40 +01:00
|
|
|
hal_server_domain(rild, hal_telephony)
|
2012-01-04 18:33:27 +01:00
|
|
|
|
|
|
|
net_domain(rild)
|
2016-05-17 06:12:17 +02:00
|
|
|
allowxperm rild self:udp_socket ioctl priv_sock_ioctls;
|
|
|
|
|
2014-02-24 21:06:11 +01:00
|
|
|
allow rild self:netlink_route_socket nlmsg_write;
|
2013-10-29 19:42:39 +01:00
|
|
|
allow rild kernel:system module_request;
|
2016-05-17 17:59:37 +02:00
|
|
|
allow rild self:capability { setpcap setgid setuid net_admin net_raw };
|
2013-10-29 19:42:39 +01:00
|
|
|
allow rild alarm_device:chr_file rw_file_perms;
|
|
|
|
allow rild cgroup:dir create_dir_perms;
|
2016-09-10 01:27:17 +02:00
|
|
|
allow rild cgroup:{ file lnk_file } r_file_perms;
|
2013-10-29 19:42:39 +01:00
|
|
|
allow rild radio_device:chr_file rw_file_perms;
|
|
|
|
allow rild radio_device:blk_file r_file_perms;
|
|
|
|
allow rild mtd_device:dir search;
|
|
|
|
allow rild efs_file:dir create_dir_perms;
|
|
|
|
allow rild efs_file:file create_file_perms;
|
|
|
|
allow rild shell_exec:file rx_file_perms;
|
|
|
|
allow rild bluetooth_efs_file:file r_file_perms;
|
|
|
|
allow rild bluetooth_efs_file:dir r_dir_perms;
|
|
|
|
allow rild radio_data_file:dir rw_dir_perms;
|
|
|
|
allow rild radio_data_file:file create_file_perms;
|
|
|
|
allow rild sdcard_type:dir r_dir_perms;
|
2014-03-18 19:01:27 +01:00
|
|
|
allow rild system_data_file:dir r_dir_perms;
|
|
|
|
allow rild system_data_file:file r_file_perms;
|
2013-10-29 19:42:39 +01:00
|
|
|
allow rild system_file:file x_file_perms;
|
|
|
|
|
|
|
|
# property service
|
2015-05-05 03:22:45 +02:00
|
|
|
set_prop(rild, radio_prop)
|
2013-10-29 19:42:39 +01:00
|
|
|
|
|
|
|
allow rild tty_device:chr_file rw_file_perms;
|
|
|
|
|
2014-02-24 21:06:11 +01:00
|
|
|
# Allow rild to create and use netlink sockets.
|
2016-05-17 06:12:17 +02:00
|
|
|
allow rild self:netlink_socket create_socket_perms_no_ioctl;
|
|
|
|
allow rild self:netlink_generic_socket create_socket_perms_no_ioctl;
|
|
|
|
allow rild self:netlink_kobject_uevent_socket create_socket_perms_no_ioctl;
|
2013-09-29 00:46:21 +02:00
|
|
|
|
|
|
|
# Access to wake locks
|
2014-05-23 22:33:32 +02:00
|
|
|
wakelock_use(rild)
|
2013-12-05 23:24:03 +01:00
|
|
|
|
2016-09-10 01:27:17 +02:00
|
|
|
r_dir_file(rild, proc)
|
2016-12-01 00:22:18 +01:00
|
|
|
r_dir_file(rild, proc_net)
|
2016-09-10 01:27:17 +02:00
|
|
|
r_dir_file(rild, sysfs_type)
|
|
|
|
r_dir_file(rild, system_file)
|
2016-05-17 06:12:17 +02:00
|
|
|
|
|
|
|
# granting the ioctl permission for rild should be device specific
|
|
|
|
allow rild self:socket create_socket_perms_no_ioctl;
|
2016-12-01 20:36:44 +01:00
|
|
|
|