Introduce system_executes_vendor_violators attribute.
We use this attribute to annotate coredomains that execute vendor code in a Treble-violating way. Bug: 62041836 Test: sepolicy builds Change-Id: Ie6052209b3901eaad8496b8fc9681421d7ee3c1c
This commit is contained in:
parent
ee268643c1
commit
282dbf7bbb
1 changed files with 6 additions and 0 deletions
|
@ -154,6 +154,12 @@ expandattribute vendor_executes_system_violators false;
|
|||
attribute data_between_core_and_vendor_violators;
|
||||
expandattribute data_between_core_and_vendor_violators false;
|
||||
|
||||
# All system domains which violate the requirement of not executing vendor
|
||||
# binaries/libraries.
|
||||
# TODO(b/62041836)
|
||||
attribute system_executes_vendor_violators;
|
||||
expandattribute system_executes_vendor_violators false;
|
||||
|
||||
# hwservices that are accessible from untrusted applications
|
||||
# WARNING: Use of this attribute should be avoided unless
|
||||
# absolutely necessary. It is a temporary allowance to aid the
|
||||
|
|
Loading…
Reference in a new issue