2016-10-12 23:58:09 +02:00
|
|
|
# TODO: deal with tmpfs_domain pub/priv split properly
|
|
|
|
# Read system properties managed by zygote.
|
|
|
|
allow appdomain zygote_tmpfs:file read;
|
2017-12-15 03:20:30 +01:00
|
|
|
|
|
|
|
neverallow appdomain system_server:udp_socket {
|
2018-03-27 15:34:54 +02:00
|
|
|
accept append bind create ioctl listen lock name_bind
|
|
|
|
relabelfrom relabelto setattr shutdown };
|