platform_system_sepolicy/microdroid/system/public
Alan Stokes 766caba5de Modify sepolicy for compos key changes
Add the compos_key_helper domain for the process which has access to
the signing key, make sure it can't be crashdumped. Also extend that
protection to diced & its HAL.

Rename compos_verify_key to compos_verify, because it doesn't verify
keys any more.

Move exec types used by Microdroid to file.te in the host rather than
their own dedicated files.

Bug: 218494522
Test: atest CompOsSigningHostTest CompOsDenialHostTest
Change-Id: I942667355d8ce29b3a9eb093e0b9c4f6ee0df6c1
2022-02-17 12:14:40 +00:00
..
adbd.te Move microdroid sepolicy to system/sepolicy 2021-07-19 07:48:34 +00:00
apexd.te Move microdroid sepolicy to system/sepolicy 2021-07-19 07:48:34 +00:00
attributes Modify sepolicy for compos key changes 2022-02-17 12:14:40 +00:00
crash_dump.te Move microdroid sepolicy to system/sepolicy 2021-07-19 07:48:34 +00:00
device.te Give DICE HAL access to driver 2022-01-25 15:22:42 +00:00
file.te Remove hwservicemanager from microdroid sepolicy 2022-01-27 21:48:37 +00:00
global_macros Move microdroid sepolicy to system/sepolicy 2021-07-19 07:48:34 +00:00
hal_dice.te Add policies for diced and hal_dice in microdroid 2022-01-13 01:37:00 +09:00
init.te Move microdroid sepolicy to system/sepolicy 2021-07-19 07:48:34 +00:00
ioctl_defines Move microdroid sepolicy to system/sepolicy 2021-07-19 07:48:34 +00:00
ioctl_macros Move microdroid sepolicy to system/sepolicy 2021-07-19 07:48:34 +00:00
kernel.te Move microdroid sepolicy to system/sepolicy 2021-07-19 07:48:34 +00:00
logcat.te microdroid: introduce logcat domain 2021-10-25 20:29:28 +09:00
logd.te Move microdroid sepolicy to system/sepolicy 2021-07-19 07:48:34 +00:00
neverallow_macros Move microdroid sepolicy to system/sepolicy 2021-07-19 07:48:34 +00:00
property.te Remove hwservicemanager from microdroid sepolicy 2022-01-27 21:48:37 +00:00
roles Move microdroid sepolicy to system/sepolicy 2021-07-19 07:48:34 +00:00
runas.te Move microdroid sepolicy to system/sepolicy 2021-07-19 07:48:34 +00:00
servicemanager.te Move microdroid sepolicy to system/sepolicy 2021-07-19 07:48:34 +00:00
shell.te Move microdroid sepolicy to system/sepolicy 2021-07-19 07:48:34 +00:00
statsd.te Remove keystore from microdroid sepolicy 2022-01-27 21:48:37 +00:00
su.te Remove hwservicemanager from microdroid sepolicy 2022-01-27 21:48:37 +00:00
te_macros Add use_bionic_libs macro 2022-01-25 09:47:56 +09:00
tombstoned.te Move microdroid sepolicy to system/sepolicy 2021-07-19 07:48:34 +00:00
toolbox.te Move microdroid sepolicy to system/sepolicy 2021-07-19 07:48:34 +00:00
type.te Remove hwservicemanager from microdroid sepolicy 2022-01-27 21:48:37 +00:00
ueventd.te Move microdroid sepolicy to system/sepolicy 2021-07-19 07:48:34 +00:00
vendor_init.te Add use_bionic_libs macro 2022-01-25 09:47:56 +09:00