platform_system_sepolicy/apex
Tobias Thierer 353ad0fd47 SEPolicy for boringssl_self_test.
This CL adds hand-written SELinux rules to:
 - define the boringssl_self_test security domain
 - label the corresponding files at type boringssl_self_test_marker
   and boringssl_self_test_exec.
 - define an automatic transition from init to boringssl_self_test
   domains, plus appropriate access permissions.

Bug: 137267623
Test: When run together with the other changes from draft CL topic
      http://aosp/q/topic:bug137267623_bsslselftest, check that:
      - both /dev/boringssl/selftest/* marker files are
        present after the device boots.
      - Test: after the boringssl_self_test{32,64} binaries have
        run, no further SELinux denials occur for processes
        trying to write the marker file.

Change-Id: I77de0bccdd8c1e22c354d8ea146e363f4af7e36f
2019-09-05 02:40:57 +01:00
..
apex.test-file_contexts Sepolicy: Initial Apexd pre-/postinstall rules 2019-01-24 15:06:17 -08:00
com.android.art.debug-file_contexts Split off ART rules for new ART APEX. 2019-08-30 17:47:31 +01:00
com.android.art.release-file_contexts Split off ART rules for new ART APEX. 2019-08-30 17:47:31 +01:00
com.android.bootanimation-file_contexts Set context for files in the com.android.bootanimation apex 2019-05-29 13:49:41 -07:00
com.android.conscrypt-file_contexts SEPolicy for boringssl_self_test. 2019-09-05 02:40:57 +01:00
com.android.i18n-file_contexts Add sepolicy for com.android.i18n module 2019-07-26 17:34:02 +01:00
com.android.media-file_contexts Remove permission for APEX manifest. 2018-11-24 17:19:05 +00:00
com.android.media.swcodec-file_contexts Move mediaswcodec service to APEX 2019-03-05 14:54:14 -08:00
com.android.neuralnetworks-file_contexts Add file contexts for com.android.neuralnetworks APEX package. 2019-07-18 09:58:48 +00:00
com.android.os.statsd-file_contexts Add file-contexts for statsd apex 2019-08-19 15:27:38 -07:00
com.android.resolv-file_contexts Remove permission for APEX manifest. 2018-11-24 17:19:05 +00:00
com.android.runtime-file_contexts Split off ART rules for new ART APEX. 2019-08-30 17:47:31 +01:00
com.android.tzdata-file_contexts Remove permission for APEX manifest. 2018-11-24 17:19:05 +00:00