summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorLuke Chang <lukechang@google.com>2021-07-21 00:41:19 +0000
committerAutomerger Merge Worker <android-build-automerger-merge-worker@system.gserviceaccount.com>2021-07-21 00:41:19 +0000
commit584baba2705b24977a502779917c0ddfee098e92 (patch)
treec11504bec6e206cb8f7af8ed77919aaaae8f80cc
parent97c67688d6161f85b6e379d8909dbf16101168ea (diff)
parent4342600ecf7625a3de9eb80c3a5f85a06a15794f (diff)
downloadpixel-sepolicy-584baba2705b24977a502779917c0ddfee098e92.tar.gz
add file contexts for factory_post_boot.sh am: 4342600ecf
Original change: https://googleplex-android-review.googlesource.com/c/platform/hardware/google/pixel-sepolicy/+/15311533 Change-Id: I608637e96433a725662f79264618de1bb074eb17
-rw-r--r--factory_boost/factory-post-boot.te6
-rw-r--r--factory_boost/file_contexts1
2 files changed, 7 insertions, 0 deletions
diff --git a/factory_boost/factory-post-boot.te b/factory_boost/factory-post-boot.te
new file mode 100644
index 0000000..103b6eb
--- /dev/null
+++ b/factory_boost/factory-post-boot.te
@@ -0,0 +1,6 @@
+# for factory_-prefixed targets only
+type factory-post-boot-sh, domain;
+type factory-post-boot-sh_exec, vendor_file_type, exec_type, file_type;
+init_daemon_domain(factory-post-boot-sh)
+
+allow factory-post-boot-sh vendor_toolbox_exec:file execute_no_trans;
diff --git a/factory_boost/file_contexts b/factory_boost/file_contexts
new file mode 100644
index 0000000..976e219
--- /dev/null
+++ b/factory_boost/file_contexts
@@ -0,0 +1 @@
+/vendor/bin/factory/factory_post_boot u:object_r:factory-post-boot-sh_exec:s0