From 79eda9ebb85e4ff47585d628c520664d9883ddd8 Mon Sep 17 00:00:00 2001 From: d34d Date: Wed, 20 Jul 2016 11:02:12 -0700 Subject: sepolicy: Put theme service in its own context Allow the theme manager and its data to be sandboxed in its own context Change-Id: I7898663d1c196bfe04fa4c539d20191a43fde284 --- sepolicy/system.te | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) (limited to 'sepolicy/system.te') diff --git a/sepolicy/system.te b/sepolicy/system.te index 7b202eb0..a9831b68 100644 --- a/sepolicy/system.te +++ b/sepolicy/system.te @@ -7,7 +7,7 @@ allow system_server dhcp_data_file:dir r_dir_perms; allow system_server dhcp_data_file:file r_file_perms; # Themes -allow system_server theme_data_file:dir create_dir_perms; -allow system_server theme_data_file:file create_file_perms; +allow system_server themeservice_app_data_file:dir create_dir_perms; +allow system_server themeservice_app_data_file:file create_file_perms; allow system_server resourcecache_data_file:dir create_dir_perms; allow system_server resourcecache_data_file:file create_file_perms; -- cgit v1.2.3