diff options
author | jinfaw <jinfaw@codeaurora.org> | 2017-07-05 16:58:16 +0800 |
---|---|---|
committer | Gerrit - the friendly Code Review server <code-review@localhost> | 2017-07-12 02:41:55 -0700 |
commit | 6dfef3de7a5096583e1d85dde0badcd27d35fb9e (patch) | |
tree | a3a833d6065713514675b78f1e1a8873f8f209a5 /sdm660 | |
parent | 8b4c5e966d3a93f6e2faee70bd5e76b8dd2217d6 (diff) | |
download | android_device_qcom_sepolicy-6dfef3de7a5096583e1d85dde0badcd27d35fb9e.tar.gz android_device_qcom_sepolicy-6dfef3de7a5096583e1d85dde0badcd27d35fb9e.tar.bz2 android_device_qcom_sepolicy-6dfef3de7a5096583e1d85dde0badcd27d35fb9e.zip |
sepolicy:Add rule for carrier overlay
refactor rule for regional carrier overlay
due to full treble is enabled
Change-Id: I39905a8fa290b5f35820949fcd23c2d26465af60
CRs-Fixed: 2036896
Diffstat (limited to 'sdm660')
-rw-r--r-- | sdm660/idmap.te | 3 | ||||
-rw-r--r-- | sdm660/platform_app.te | 3 | ||||
-rw-r--r-- | sdm660/priv_app.te | 3 | ||||
-rw-r--r-- | sdm660/system_app.te | 3 | ||||
-rw-r--r-- | sdm660/untrusted_app.te | 3 |
5 files changed, 15 insertions, 0 deletions
diff --git a/sdm660/idmap.te b/sdm660/idmap.te index 84b11e8f..7f86d3aa 100644 --- a/sdm660/idmap.te +++ b/sdm660/idmap.te @@ -28,3 +28,6 @@ #for oemfs allow idmap oemfs:file r_file_perms; allow idmap oemfs:dir r_dir_perms; +#for regionalization +allow idmap regionalization_file:file r_file_perms; +allow idmap regionalization_file:dir r_dir_perms; diff --git a/sdm660/platform_app.te b/sdm660/platform_app.te index 919f16f5..131dd3a0 100644 --- a/sdm660/platform_app.te +++ b/sdm660/platform_app.te @@ -27,3 +27,6 @@ #for oemfs allow platform_app oemfs:lnk_file { read getattr }; +#for regionalization +allow platform_app regionalization_file:file r_file_perms; +allow platform_app regionalization_file:dir r_dir_perms; diff --git a/sdm660/priv_app.te b/sdm660/priv_app.te index 203ed549..7182b088 100644 --- a/sdm660/priv_app.te +++ b/sdm660/priv_app.te @@ -27,3 +27,6 @@ #for oemfs allow priv_app oemfs:lnk_file { read getattr }; +#for regionalization +allow priv_app regionalization_file:file r_file_perms; +allow priv_app regionalization_file:dir r_dir_perms; diff --git a/sdm660/system_app.te b/sdm660/system_app.te index 10c8adac..12784131 100644 --- a/sdm660/system_app.te +++ b/sdm660/system_app.te @@ -27,3 +27,6 @@ #for oemfs allow system_app oemfs:lnk_file { read getattr }; +#for regionalization +allow system_app regionalization_file:file r_file_perms; +allow system_app regionalization_file:dir r_dir_perms; diff --git a/sdm660/untrusted_app.te b/sdm660/untrusted_app.te index e8b029e1..e84059b1 100644 --- a/sdm660/untrusted_app.te +++ b/sdm660/untrusted_app.te @@ -28,3 +28,6 @@ # for oemfs allow untrusted_app oemfs:lnk_file { read getattr }; +#for regionalization +allow untrusted_app regionalization_file:file r_file_perms; +allow untrusted_app regionalization_file:dir r_dir_perms; |