66947c66d6
This commit adds sepolicy on user build so that Thread HAL simulation can run on cuttlefish user builds. Bug: 342154029 Test: presubmit Change-Id: I576f52a1bdf5b0966e73ee93e4b68bed613b0796
17 lines
810 B
Text
17 lines
810 B
Text
#
|
|
# ot_rcp is the simulated Thread Radio Coprocessor device which is used by
|
|
# Thread Network HAL for simulating the Thread radio chip.
|
|
#
|
|
type ot_rcp, domain;
|
|
type ot_rcp_exec, exec_type, vendor_file_type, file_type;
|
|
|
|
domain_auto_trans(hal_threadnetwork_default, ot_rcp_exec, ot_rcp)
|
|
allow hal_threadnetwork_default devpts:chr_file {open read write ioctl};
|
|
allow hal_threadnetwork_default ot_rcp:process signal;
|
|
allow ot_rcp hal_threadnetwork_default:fd use;
|
|
allow ot_rcp hal_threadnetwork_default:fifo_file rw_file_perms;
|
|
allow ot_rcp devpts:chr_file {read write ioctl};
|
|
allow ot_rcp self:udp_socket { bind create ioctl read setopt write };
|
|
allow ot_rcp node:udp_socket node_bind;
|
|
allow ot_rcp port:udp_socket name_bind;
|
|
allow ot_rcp self:netlink_route_socket { nlmsg_read nlmsg_readpriv create read write };
|