Merge "Thread: allow ot-rcp to bind a specific netif" into main am: 60f55289f8

Original change: https://android-review.googlesource.com/c/platform/system/sepolicy/+/3081323

Change-Id: I833ea7b2e26feeefdf2529d2ab0c716c696cdda5
Signed-off-by: Automerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>
This commit is contained in:
Yakun Xu 2024-05-17 04:11:55 +00:00 committed by Automerger Merge Worker
commit 8077576872

4
vendor/ot_rcp.te vendored
View file

@ -8,10 +8,12 @@ type ot_rcp_exec, exec_type, vendor_file_type, file_type;
userdebug_or_eng(`
domain_auto_trans(hal_threadnetwork_default, ot_rcp_exec, ot_rcp)
allow hal_threadnetwork_default devpts:chr_file {open read write ioctl};
allow hal_threadnetwork_default ot_rcp:process signal;
allow ot_rcp hal_threadnetwork_default:fd use;
allow ot_rcp hal_threadnetwork_default:fifo_file rw_file_perms;
allow ot_rcp devpts:chr_file {read write ioctl};
allow ot_rcp self:udp_socket create_socket_perms_no_ioctl;
allow ot_rcp self:udp_socket { bind create ioctl read setopt write };
allow ot_rcp node:udp_socket node_bind;
allow ot_rcp port:udp_socket name_bind;
allow ot_rcp self:netlink_route_socket { nlmsg_read nlmsg_readpriv create read write };
')