Merge "Rename uprobe_private to uprobestats for BPFs." into main
This commit is contained in:
commit
04ea62b358
4 changed files with 5 additions and 5 deletions
|
@ -41,7 +41,7 @@ neverallow { domain -bpfloader
|
|||
neverallow { domain -bpfloader -netd -network_stack -system_server } fs_bpf_netd_readonly:file { getattr read };
|
||||
neverallow { domain -bpfloader -netd -netutils_wrapper -network_stack -system_server } fs_bpf_netd_shared:file { getattr read };
|
||||
neverallow { domain -bpfloader -network_stack } fs_bpf_tethering:file { getattr read };
|
||||
neverallow { domain -bpfloader -uprobestats } fs_bpf_uprobe_private:file { getattr read };
|
||||
neverallow { domain -bpfloader -uprobestats } fs_bpf_uprobestats:file { getattr read };
|
||||
neverallow { domain -bpfloader -gpuservice -netd -netutils_wrapper -network_stack -system_server -uprobestats } { bpffs_type -fs_bpf_vendor }:file write;
|
||||
|
||||
neverallow { domain -bpfloader } bpffs_type:lnk_file ~read;
|
||||
|
|
|
@ -8,7 +8,7 @@ type fs_bpf_net_shared, fs_type, bpffs_type;
|
|||
type fs_bpf_netd_readonly, fs_type, bpffs_type;
|
||||
type fs_bpf_netd_shared, fs_type, bpffs_type;
|
||||
type fs_bpf_loader, fs_type, bpffs_type;
|
||||
type fs_bpf_uprobe_private, fs_type, bpffs_type;
|
||||
type fs_bpf_uprobestats, fs_type, bpffs_type;
|
||||
|
||||
# /data/misc/storaged
|
||||
type storaged_data_file, file_type, data_file_type, core_data_file_type;
|
||||
|
|
|
@ -419,4 +419,4 @@ genfscon bpf /netd_readonly u:object_r:fs_bpf_netd_readonly:s0
|
|||
genfscon bpf /netd_shared u:object_r:fs_bpf_netd_shared:s0
|
||||
genfscon bpf /tethering u:object_r:fs_bpf_tethering:s0
|
||||
genfscon bpf /vendor u:object_r:fs_bpf_vendor:s0
|
||||
genfscon bpf /uprobe_private u:object_r:fs_bpf_uprobe_private:s0
|
||||
genfscon bpf /uprobestats u:object_r:fs_bpf_uprobestats:s0
|
||||
|
|
|
@ -7,8 +7,8 @@ type uprobestats_exec, system_file_type, exec_type, file_type;
|
|||
# Allow init to start uprobestats.
|
||||
init_daemon_domain(uprobestats)
|
||||
|
||||
allow uprobestats fs_bpf_uprobe_private:file { read write };
|
||||
allow uprobestats fs_bpf_uprobe_private:dir search;
|
||||
allow uprobestats fs_bpf_uprobestats:file { read write };
|
||||
allow uprobestats fs_bpf_uprobestats:dir search;
|
||||
allow uprobestats bpfloader:bpf { map_read map_write prog_run };
|
||||
allow uprobestats self:capability2 perfmon;
|
||||
allow uprobestats self:perf_event { cpu open write };
|
||||
|
|
Loading…
Reference in a new issue