Merge "Added permission to allow for ioctl to be added to install_data_file" am: b00341ad1e
Original change: https://android-review.googlesource.com/c/platform/system/sepolicy/+/2030123 Change-Id: I8628f7536336d1cad320c19d5802e04d86f50268
This commit is contained in:
commit
9e7c0e6ead
1 changed files with 3 additions and 2 deletions
|
@ -115,9 +115,10 @@ allow installd system_data_file:notdevfile_class_set { getattr relabelfrom unlin
|
|||
allow installd app_data_file_type:dir { create_dir_perms relabelfrom relabelto };
|
||||
allow installd app_data_file_type:notdevfile_class_set { create_file_perms relabelfrom relabelto };
|
||||
|
||||
# Allow setting extended attributes (for project quota IDs) on dirs
|
||||
# Allow setting extended attributes (for project quota IDs) on dirs and files
|
||||
# and to enable project ID inheritance through FS_IOC_SETFLAGS
|
||||
allowxperm installd { app_data_file_type system_data_file }:{ dir file } ioctl {
|
||||
# Added install_data_file to be able to create file under /data/misc/installd/ioctl_check
|
||||
allowxperm installd { app_data_file_type system_data_file install_data_file}:{ dir file } ioctl {
|
||||
FS_IOC_FSGETXATTR
|
||||
FS_IOC_FSSETXATTR
|
||||
FS_IOC_GETFLAGS
|
||||
|
|
Loading…
Reference in a new issue