Merge "Sepolicy setup for /data/misc/connectivityblobdb/" into main

This commit is contained in:
Hansen Kurli 2024-03-20 20:27:18 +00:00 committed by Gerrit Code Review
commit 78f7da3136
4 changed files with 11 additions and 0 deletions

View file

@ -962,6 +962,8 @@
/data/misc/camera/test camera_data_file
/data/misc/carrierid radio_data_file
/data/misc/carrierid/test radio_data_file
/data/misc/connectivityblobdb connectivityblob_data_file
/data/misc/connectivityblobdb/test connectivityblob_data_file
/data/misc/dhcp dhcp_data_file
/data/misc/dhcp/test dhcp_data_file
/data/misc/dhcp-6.8.2 dhcp_data_file

View file

@ -160,3 +160,6 @@ type system_aconfig_storage_file, system_file_type, file_type;
# Type for /vendor/etc/aconfig
type vendor_aconfig_storage_file, vendor_file_type, file_type;
# /data/misc/connectivityblobdb
type connectivityblob_data_file, file_type, data_file_type, core_data_file_type;

View file

@ -651,6 +651,7 @@
/data/misc/bluedroid/\.a2dp_data u:object_r:bluetooth_socket:s0
/data/misc/camera(/.*)? u:object_r:camera_data_file:s0
/data/misc/carrierid(/.*)? u:object_r:radio_data_file:s0
/data/misc/connectivityblobdb(/.*)? u:object_r:connectivityblob_data_file:s0
/data/misc/dhcp(/.*)? u:object_r:dhcp_data_file:s0
/data/misc/dhcp-6\.8\.2(/.*)? u:object_r:dhcp_data_file:s0
/data/misc/dmesgd(/.*)? u:object_r:dmesgd_data_file:s0

View file

@ -611,6 +611,11 @@ allow system_server adb_keys_file:file create_file_perms;
allow system_server appcompat_data_file:dir rw_dir_perms;
allow system_server appcompat_data_file:file create_file_perms;
# Manage /data/misc/connectivityblobdb.
# Specifically, for vpn and wifi to create, read and write to an sqlite database.
allow system_server connectivityblob_data_file:dir create_dir_perms;
allow system_server connectivityblob_data_file:file create_file_perms;
# Manage /data/misc/emergencynumberdb
allow system_server emergency_data_file:dir create_dir_perms;
allow system_server emergency_data_file:file create_file_perms;