platform_system_sepolicy/private/automotive_display_service.te
Haoxiang Li 741b9cd5ac Sepolicy update for Automotive Display Service
Bug: 140395359
Test: make sepolicy -j
Change-Id: Ib6ddf55210d8a8ee4868359c88e3d177edce9610
Signed-off-by: Changyeon Jo <changyeon@google.com>
2020-01-21 18:43:27 +00:00

20 lines
651 B
Text

# Display service for Automotive
type automotive_display, domain, coredomain;
type automotive_display_exec, system_file_type, exec_type, file_type;
init_daemon_domain(automotive_display)
# Allow to use Binder IPC for SurfaceFlinger.
binder_use(automotive_display)
# Allow to use HwBinder IPC for HAL implementations.
hwbinder_use(automotive_display)
# Allow to read the target property.
get_prop(automotive_display, hwservicemanager_prop)
# Allow to find SurfaceFlinger.
allow automotive_display surfaceflinger_service:service_manager find;
# Allow client domain to do binder IPC to serverdomain.
binder_call(automotive_display, surfaceflinger)