diff options
author | Riley Spahn <rileyspahn@google.com> | 2014-07-16 09:42:06 -0700 |
---|---|---|
committer | Nick Kralevich <nnk@google.com> | 2014-07-16 09:52:13 -0700 |
commit | d26357641d9f85750f63c9e4ec441a506e806389 (patch) | |
tree | 85750981b73fa182affd72d70bdc6c2629150714 /system_server.te | |
parent | 354d6caeafd683174a3e0a480971617a1c9ac835 (diff) | |
download | android_external_sepolicy-d26357641d9f85750f63c9e4ec441a506e806389.tar.gz android_external_sepolicy-d26357641d9f85750f63c9e4ec441a506e806389.tar.bz2 android_external_sepolicy-d26357641d9f85750f63c9e4ec441a506e806389.zip |
Remove auditallow from system_server.
system_server auditallow statements were causing logspam and
there is not a good way to negate services from specific devices
so as a fix we are removing all system_server auditallows. These
logs may not be useful anyway because I suspsect that system_server
will probe for most all services anyway.
(cherry picked from commit 5a25fbf7ca281d2b372def95b92b400a073604b6)
Change-Id: Ibadf1ce5e66f279fc49fd8fa20dfc64c960dd57f
Diffstat (limited to 'system_server.te')
-rw-r--r-- | system_server.te | 9 |
1 files changed, 0 insertions, 9 deletions
diff --git a/system_server.te b/system_server.te index 5e217d4..9d973db 100644 --- a/system_server.te +++ b/system_server.te @@ -364,15 +364,6 @@ allow system_server system_server_service:service_manager add; # Audited locally. service_manager_local_audit_domain(system_server) -auditallow system_server { - service_manager_type - -healthd_service - -keystore_service - -mediaserver_service - -radio_service - -surfaceflinger_service - -system_server_service -}:service_manager find; allow system_server keystore:keystore_key { test |