platform_system_sepolicy/private/compat
A. Cody Schuffelen 158e176c5a Add sepolicy for the securityfs mount type.
See discussion in aosp/1233645. There was a concern about this
filesystem automounting when enabled, so this change adds sepolicy to
preemptively lock it down.

I'm not confident it actually automounts. If it does, it'll land in
/sys/kernel/security, which is also protected with the sysfs policy.

Test: Builds
Bug: 148102533
Change-Id: I78a246a5c18953f2471f84367ab383afb2742908
Merged-In: I78a246a5c18953f2471f84367ab383afb2742908
2020-03-13 15:55:05 +00:00
..
26.0 Merge "Define sepolicy for redirect-socket-calls feature" am: 622e4f761b am: 4f799574bd am: 9c7e277700 2020-02-20 05:59:04 +00:00
27.0 Merge "Define sepolicy for redirect-socket-calls feature" am: 622e4f761b am: 4f799574bd am: 9c7e277700 2020-02-20 05:59:04 +00:00
28.0 Merge "Define sepolicy for redirect-socket-calls feature" am: 622e4f761b am: 4f799574bd am: 9c7e277700 2020-02-20 05:59:04 +00:00
29.0 Add sepolicy for the securityfs mount type. 2020-03-13 15:55:05 +00:00