summaryrefslogtreecommitdiff
path: root/sepolicy/untrusted_app.te
diff options
context:
space:
mode:
authorInseob Kim <inseob@google.com>2020-12-14 16:44:28 +0900
committerInseob Kim <inseob@google.com>2020-12-15 14:49:10 +0900
commit8f4bb060df4ccc309f7a628ba2f9be0c20477e72 (patch)
tree7cb53d2b35110c2de5389df2c862a06d59b30055 /sepolicy/untrusted_app.te
parent5c901074928e66a9938e8f5c2d70f5cec607ee5d (diff)
downloadpoplar-8f4bb060df4ccc309f7a628ba2f9be0c20477e72.tar.gz
Fix selinux denials
This removes rules causing build failure due to neverallow. Bug: 170082975 Test: m selinux_policy Test: selinux enforcement is disabled Change-Id: Ia85042c30d7b42f3da169cb32fb3c527d54f0e43
Diffstat (limited to 'sepolicy/untrusted_app.te')
-rw-r--r--sepolicy/untrusted_app.te1
1 files changed, 0 insertions, 1 deletions
diff --git a/sepolicy/untrusted_app.te b/sepolicy/untrusted_app.te
index ffb9336..4035dd4 100644
--- a/sepolicy/untrusted_app.te
+++ b/sepolicy/untrusted_app.te
@@ -19,7 +19,6 @@ allow untrusted_app { audio_device
tombstone_data_file }:dir { getattr read search };
allow untrusted_app hi_userdata_block_device:blk_file { getattr };
-allow untrusted_app fs_bpf:dir { add_name search write };
allow untrusted_app block_device:{ dir blk_file } { getattr };
allow untrusted_app mali_device:chr_file { getattr ioctl open read write };
allow untrusted_app pstorefs:dir { search };