platform_system_sepolicy/private/kernel.te

9 lines
320 B
Text
Raw Normal View History

typeattribute kernel coredomain;
domain_auto_trans(kernel, init_exec, init)
# Allow the kernel to read otapreopt_chroot's file descriptors and files under
# /postinstall, as it uses apexd logic to mount APEX packages in /postinstall/apex.
allow kernel otapreopt_chroot:fd use;
allow kernel postinstall_file:file read;