ba0c279de4
This commit adds new SELinux permissions and neverallow rules so that
taking a bugreport does not produce any denials.
Bug: 73256908
Test: Captured bugreports on Sailfish and Walleye and verified
that there were no denials.
Merged-In: If3f2093a2b51934938e3d7e5c42036b2e2bf6de9
Change-Id: If3f2093a2b51934938e3d7e5c42036b2e2bf6de9
(cherry picked from commit daf1cdfa5a
)
11 lines
389 B
Text
11 lines
389 B
Text
type hal_camera_default, domain;
|
|
hal_server_domain(hal_camera_default, hal_camera)
|
|
|
|
type hal_camera_default_exec, exec_type, vendor_file_type, file_type;
|
|
init_daemon_domain(hal_camera_default)
|
|
|
|
allow hal_camera_default fwk_sensor_hwservice:hwservice_manager find;
|
|
|
|
# For collecting bugreports.
|
|
allow hal_camera_default dumpstate:fd use;
|
|
allow hal_camera_default dumpstate:fifo_file write;
|