summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorMeng Wang <mewan@google.com>2020-07-28 21:00:43 +0000
committerAutomerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>2020-07-28 21:00:43 +0000
commitda26fc454e9d935dd9ac8d2361bcde21baab66e8 (patch)
treeec67209237a1567ce8b102179487785e744bca78
parent5824c68f3377092ca0378dc2085c03a8448d66be (diff)
parent802a13be7fc384082705efa1f0bdc2c519938a43 (diff)
downloadcoral-sepolicy-da26fc454e9d935dd9ac8d2361bcde21baab66e8.tar.gz
Fix OBDM selinux denials am: 802a13be7f
Original change: https://googleplex-android-review.googlesource.com/c/device/google/coral-sepolicy/+/12249075 Change-Id: Ib6864bfec0df8ee8b97f0d91d5a9b59b3c7a3569
-rw-r--r--vendor/verizon/obdm_app.te6
1 files changed, 6 insertions, 0 deletions
diff --git a/vendor/verizon/obdm_app.te b/vendor/verizon/obdm_app.te
index cd7c17f..c1ca9a1 100644
--- a/vendor/verizon/obdm_app.te
+++ b/vendor/verizon/obdm_app.te
@@ -18,4 +18,10 @@ userdebug_or_eng(`
allow obdm_app sysfs:dir r_dir_perms;
r_dir_file(obdm_app, sysfs_msm_subsys)
+
+ # b/162012722
+ allow obdm_app self:qipcrtr_socket { create getattr read setopt write };
+ allow obdm_app sysfs_soc:dir search;
+ allow obdm_app sysfs_soc:file r_file_perms;
+ allow obdm_app sysfs_ssr:file r_file_perms;
')