summaryrefslogtreecommitdiffstats
path: root/r_non_plat/stp_dump3.te
blob: 0501d294ce3502eabb9a73df9b9befa1004492f8 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
# ==============================================
# Policy File of /system/binstp_dump3 Executable File


# ==============================================
# Type Declaration
# ==============================================

type stp_dump3_exec, vendor_file_type, exec_type, file_type;
type stp_dump3, domain;

# ==============================================
# Android Policy Rule
# ==============================================

# ==============================================
# NSA Policy Rule
# ==============================================

# ==============================================
# MTK Policy Rule
# ==============================================
allow stp_dump3 self:capability { net_admin fowner chown fsetid };
allow stp_dump3 self:netlink_socket { read write getattr bind create setopt };
allow stp_dump3 self:netlink_generic_socket { read write getattr bind create setopt };
allow stp_dump3 wmtdetect_device:chr_file { read write ioctl open };
allow stp_dump3 stpwmt_device:chr_file rw_file_perms;
allow stp_dump3 tmpfs:lnk_file r_file_perms;
allow stp_dump3 tmpfs:lnk_file read;
allow stp_dump3 mnt_user_file:dir search;
allow stp_dump3 mnt_user_file:lnk_file read;
allow stp_dump3 storage_file:lnk_file read;
allow stp_dump3 storage_file:dir search;
allow stp_dump3 sdcard_type:dir search;
allow stp_dump3 sdcard_type:dir {open read write create setattr getattr add_name remove_name search};
allow stp_dump3 sdcard_type:file { open read write create setattr getattr append unlink rename};
allow stp_dump3 sdcard_type:file create_file_perms;
allow stp_dump3 stp_dump_data_file:dir create_dir_perms;
allow stp_dump3 stp_dump_data_file:file create_file_perms;
allow stp_dump3 stp_dump_data_file:sock_file { write create unlink setattr };
allow stp_dump3 connsyslog_data_vendor_file:dir create_dir_perms;
allow stp_dump3 connsyslog_data_vendor_file:file create_file_perms;
get_prop(stp_dump3, coredump_prop)
init_daemon_domain(stp_dump3)