diff options
author | Shawn Guo <shawn.guo@linaro.org> | 2018-08-22 14:40:37 +0800 |
---|---|---|
committer | Shawn Guo <shawn.guo@linaro.org> | 2018-08-22 14:40:37 +0800 |
commit | f6edae694f9613627068902387e41d9385c20373 (patch) | |
tree | e52aa23cadb6efd9c266ce3c528d08da5d092700 /sepolicy/system_server.te | |
parent | 741e61d94c0ffa06f2d971aed5b662607f72d0c9 (diff) | |
download | poplar-f6edae694f9613627068902387e41d9385c20373.tar.gz |
Fix sepolicy neverallow failures with hi_overlay_file and vendor_file
Poplar build is broken as below due to the merge of "neverallow fwk access to /vendor"
in system/sepolicy repository.
libsepol.report_failure: neverallow on line 1056 of system/sepolicy/public/domain.te (or line 12227 of policy.conf) violated by allow platform_app hi_overlay_file:file { read getattr open };
libsepol.report_failure: neverallow on line 1056 of system/sepolicy/public/domain.te (or line 12227 of policy.conf) violated by allow priv_app vendor_file:file { read getattr open };
libsepol.report_failure: neverallow on line 1056 of system/sepolicy/public/domain.te (or line 12227 of policy.conf) violated by allow bootanim hi_overlay_file:file { read getattr open };
libsepol.report_failure: neverallow on line 1056 of system/sepolicy/public/domain.te (or line 12227 of policy.conf) violated by allow surfaceflinger hi_overlay_file:file { read getattr open };
libsepol.report_failure: neverallow on line 1056 of system/sepolicy/public/domain.te (or line 12227 of policy.conf) violated by allow system_app vendor_file:file { read getattr open };
libsepol.report_failure: neverallow on line 1056 of system/sepolicy/public/domain.te (or line 12227 of policy.conf) violated by allow platform_app vendor_file:file { read getattr open };
libsepol.report_failure: neverallow on line 1056 of system/sepolicy/public/domain.te (or line 12227 of policy.conf) violated by allow priv_app hi_overlay_file:file { read getattr open };
libsepol.report_failure: neverallow on line 1056 of system/sepolicy/public/domain.te (or line 12227 of policy.conf) violated by allow system_app hi_overlay_file:file { read getattr open };
libsepol.check_assertions: 8 neverallow failures occurred
Let's update Poplar sepolicy to fix the failures and get build pass.
Change-Id: I6e47077e2bc36952f897cdace0b90caf2201838b
Diffstat (limited to 'sepolicy/system_server.te')
0 files changed, 0 insertions, 0 deletions