diff options
-rw-r--r-- | sepolicy/gatord.te | 3 | ||||
-rw-r--r-- | sepolicy/init.te | 2 | ||||
-rw-r--r-- | sepolicy/logd.te | 1 |
3 files changed, 6 insertions, 0 deletions
diff --git a/sepolicy/gatord.te b/sepolicy/gatord.te new file mode 100644 index 0000000..2943a9b --- /dev/null +++ b/sepolicy/gatord.te @@ -0,0 +1,3 @@ +type gatord, domain, mlstrustedsubject; + +permissive gatord; diff --git a/sepolicy/init.te b/sepolicy/init.te index b51f08f..c7b980b 100644 --- a/sepolicy/init.te +++ b/sepolicy/init.te @@ -1,3 +1,5 @@ userdebug_or_eng(` allow init su:process { transition dyntransition rlimitinh siginh }; ') +allow init self:tcp_socket create; +allow init gatord:process { transition rlimitinh siginh }; diff --git a/sepolicy/logd.te b/sepolicy/logd.te index ece4edf..a99d8bd 100644 --- a/sepolicy/logd.te +++ b/sepolicy/logd.te @@ -1 +1,2 @@ allow logd property_socket:sock_file write; +allow logd init:unix_stream_socket connectto; |