Commit graph

110 commits

Author SHA1 Message Date
Anand S
0607293922
Revert "sm6375-common: Switch to Thermal 2.0 mock"
This reverts commit e03aec7112.

Reason for revert: We're switching to QTI AIDL thermal.

Change-Id: I27b78d5dcc32e0dce31a39d2a71ba4b3b9892a50
2024-11-11 12:33:52 +05:30
BarryBlackCat
71317365f8
sm6375-common: sepolicy: Support both display nodes for bangkk
* Goodix ts uses spi0.0 and fts uses spi0.1, so suppport both of them

Change-Id: I519b7ae4b8306c5cb4823602a3d35a609d7522e6
Signed-off-by: BarryBlackCat <silva.tiago0910@gmail.com>
2024-10-28 10:10:20 +05:30
Anand S
624980f670
Revert "sm6375-common: sepolicy: Label vendor.qti.hardware.radio.ims.IImsRadio/imsradio"
This reverts commit 43738e9d15.

Reason for revert: Resolved in I3a6d8a1486558db1622c2c447256024eed8773ae

Change-Id: I7c2cdf93cbe61816d4d6c8f334ca6fdc095c53c8
2024-08-29 20:16:00 +05:30
Anand S
e6a519acf5
Revert "sm6375-common: sepolicy: Address radio service denials"
This reverts commit 1190897038.

Reason for revert: Resolved in I3a6d8a1486558db1622c2c447256024eed8773ae & Ia119414d2aa417215fbc9bdefe69ee5771860d23

Change-Id: Ib010e5bda4b240dfa5616722ae139774c4d4fc68
2024-08-29 20:16:00 +05:30
Andrew Hexen
35e2d0551d
Revert "sm6375-common: sepolicy: Fix denials related to vendor_qtelephony"
This reverts commit 8029a5833e.

Reason for revert: Resolved in I3a6d8a1486558db1622c2c447256024eed8773ae

Change-Id: I6b11bfeafdff078dc2d196cfbc0c8f64a3b66c7c
2024-08-29 20:16:00 +05:30
snnbyyds
f182f2c1bd
sm6375-common: sepolicy: Suppress a hal_camera_default denial
* W provider@2.4-se: type=1400 audit(0.0:236): avc:  denied  { read } for  name="u:object_r:default_prop:s0" dev="tmpfs" ino=21259 scontext=u:r:hal_camera_default:s0 tcontext=u:object_r:default_prop:s0 tclass=file permissive=0

Change-Id: I22cb788198489d6d729e975460674f07cff38072
2024-08-21 20:16:00 +05:30
Anand S
c077e33736
sm6375-common: sepolicy: Add rule for fingerprint
* E SELinux : avc:  denied  { find } for interface=android.hardware.health::IHealth sid=u:r:hal_fingerprint_default:s0 pid=1445 scontext=u:r:hal_fingerprint_default:s0 tcontext=u:object_r:hal_health_hwservice:s0 tclass=hwservice_manager permissive=0

Change-Id: I7a7ff4798f1c605948627b73ae3f7a76596ec354
2024-08-10 20:16:00 +05:30
Anand S
5797d151b5
sm6375-common: sepolicy: Allow fp hal to access graphics device
* I HwBinder:1502_1: type=1400 audit(0.0:862): avc:  denied  { read write } for  name="card0" dev="tmpfs" ino=26702 scontext=u:r:hal_fingerprint_default:s0 tcontext=u:object_r:graphics_device:s0 tclass=chr_file permissive=1
* I HwBinder:1502_1: type=1400 audit(0.0:863): avc:  denied  { open } for  path="/dev/dri/card0" dev="tmpfs" ino=26702 scontext=u:r:hal_fingerprint_default:s0 tcontext=u:object_r:graphics_device:s0 tclass=chr_file permissive=1
* I HwBinder:1502_1: type=1400 audit(0.0:864): avc:  denied  { ioctl } for  path="/dev/dri/card0" dev="tmpfs" ino=26702 ioctlcmd=0x649f scontext=u:r:hal_fingerprint_default:s0 tcontext=u:object_r:graphics_device:s0 tclass=chr_file permissive=1

Change-Id: Iccfda81d6ab92f43c988ab2ff85577dffbcd5699
2024-08-10 20:16:00 +05:30
Anand S
a7f57c0aa4
sm6375-common: sepolicy: Allow binder calls from fp hal to health hal
* I health@2.1-serv: type=1400 audit(0.0:860): avc:  denied  { call } for  scontext=u:r:hal_health_default:s0 tcontext=u:r:hal_fingerprint_default:s0 tclass=binder permissive=0

Change-Id: Ifc834b3ef0f07ebf94ecb1f3c7163f8b9959b0f1
2024-08-10 20:16:00 +05:30
Anand S
a4472b6393
sm6375-common: sepolicy: Allow capsense_reset to create netlink_kobject_uevent_socket
* W capsense_reset: type=1400 audit(0.0:42): avc:  denied  { create } for  scontext=u:r:capsense_reset:s0 tcontext=u:r:capsense_reset:s0 tclass=netlink_kobject_uevent_socket permissive=0

Change-Id: I0219ec9cd04b913de53f3ae02f8047ae00932252
2024-08-08 20:16:00 +05:30
Anand S
a077049b4b
sm6375-common: sepolicy: Fix connectto denials related to Power HAL
* avc:  denied  { connectto } for  path="/dev/socket/property_service" scontext=u:r:hal_power_default:s0 tcontext=u:r:init:s0 tclass=unix_stream_socket permissive=0

Change-Id: Ida438cb2136e75ffbde76fd7dee3bb283e9f6fe2
2024-08-08 20:16:00 +05:30
Andrew Hexen
ed34e0aec5
sm6375-common: sepolicy: Fix denials related to vendor_qtelephony
avc:  denied  { find } for pid=2562 uid=10156 name=vendor.qti.hardware.radio.ims.IImsRadio/imsradio0 scontext=u:r:vendor_qtelephony:s0:c156,c256,c512,c768 tcontext=u:object_r:default_android_service:s0 tclass=service_manager permissive=0

(Picked from commit Iacd17a9621ca9bfc0e80fb17eadd4461475ef1aa)

Signed-off-by: Andrew Hexen <SyberHexen@gmail.com>
Change-Id: Ia24447db581364570be3259e61e0e37d57f86365
2024-08-08 20:16:00 +05:30
Anand S
c9a76ef3f4
sm6375-common: sepolicy: Fix vendor_hal_gnss_qti denial
* E SELinux : avc:  denied  { find } for pid=1003 uid=1021 name=android.frameworks.sensorservice.ISensorManager/default scontext=u:r:vendor_hal_gnss_qti:s0 tcontext=u:object_r:fwk_sensor_service:s0 tclass=service_manager permissive=0.

Change-Id: Ie2ef4484794c7087b61e674756a61d4bdd20fd72
2024-08-01 20:16:00 +05:30
Keertesh
2b6dc98336
sm6375-common: sepolicy: Label vendor.qti.hardware.radio.ims.IImsRadio/imsradio
* E SELinux : avc:  denied  { find } for pid=2735 uid=10166 name=vendor.qti.hardware.radio.ims.IImsRadio/imsradio0 scontext=u:r:vendor_qtelephony:s0:c166,c256,c512,c768 tcontext=u:object_r:default_android_service:s0 tclass=service_manager permissive=0.

Change-Id: I10a41013aed59dafdd59bf26378f71f1a05f80fd
2024-08-01 20:16:00 +05:30
=?UTF-8?q?=D0=94=D0=B0=D0=BD=D1=8F?=
8c4c453725
sm6375-common: sepolicy: Address denials for hal_power_default
* W NodeLooperThrea: type=1400 audit(0.0:699): avc:  denied  { write } for  name="property_service" dev="tmpfs" ino=18780 scontext=u:r:hal_power_default:s0 tcontext=u:object_r:property_socket:s0 tclass=sock_file permissive=0.

Change-Id: I8908ef81fd59832e12dc5eca78ae8a4d48056531
2024-08-01 20:16:00 +05:30
itsnouralawad
297127bb5e
sm6375-common: sepolicy: Allow vendor_hvdcp to access sysfs
* W hvdcp_opti: type=1400 audit(0.0:4035): avc:  denied  { read } for  name="name" dev="sysfs" ino=84102 scontext=u:r:vendor_hvdcp:s0 tcontext=u:object_r:sysfs:s0 tclass=file permissive=0

Change-Id: I022383cf00f4c3ede5755de73a5711b3c6145e5f
2024-07-26 20:16:00 +05:30
Anand S
e20781cc82
sm6375-common: sepolicy: Address radio service denials
* E SELinux : avc:  denied  { find } for pid=2577 uid=10160 name=vendor.qti.hardware.radio.qcrilhook.IQtiOemHook/oemhook0 scontext=u:r:vendor_qtelephony:s0:c160,c256,c512,c768 tcontext=u:object_r:default_android_service:s0 tclass=service_manager permissive=0
* E SELinux : avc:  denied  { find } for pid=2577 uid=10160 name=vendor.qti.hardware.radio.am.IQcRilAudio/slot1 scontext=u:r:vendor_qtelephony:s0:c160,c256,c512,c768 tcontext=u:object_r:default_android_service:s0 tclass=service_manager permissive=0

Change-Id: I7f31e90c42e0f5a8f5b85147f34f4c30448e6208
2024-07-25 20:16:00 +05:30
Anand S
b3f68d0b14
sm6375-common: sepolicy: Address input sysfs nodes as sysfs_sensors
Change-Id: I74bcef0780be332a6b0ca8b11e562d0f82a27cae
2024-07-25 20:16:00 +05:30
Anand S
7e713efdbb
sm6375-common: sepolicy: Label dt-gesture nodes for Power HAL
Change-Id: Ie84e6eaf7748e2d5371f3239aff631eeafc1e982
2024-07-25 20:16:00 +05:30
Anand S
41c90591ea
sm6375-common: sepolicy: Allow libperfmgr to write to sysfs_sensors nodes
Change-Id: I22ce808b706adfc8dedc976283129ba4d8ded815
2024-07-25 20:16:00 +05:30
Anand S
5c7c376986
sm6375-common: sepolicy: Add capsense_reset sepolicies
Change-Id: Ie329c52951965b3de54fd701e5011981fabc216b
2024-07-25 20:16:00 +05:30
Vaisakh Murali
038d9e8853
sm6375-common: Introduce a stub blair-post-boot script
This will be used to tune some parameters in the device. Only run
this script after proprietary kernel post-boot has run, so that
these changes are not overriden by the same.

Change-Id: Ibcef27a2813870c62d54c9d762eae9e03da677ad
Signed-off-by: Vaisakh Murali <mvaisakh@statixos.com>
2024-07-21 20:16:00 +05:30
me-cafebabe
8931f83873
sm6375-common: sepolicy: Allow vendor_init write to proc_sched
Change-Id: I7665a5f03f3ce383e00956b67023626604422093
2024-07-21 20:16:00 +05:30
LuK1337
3491348ec3
sm6375-common: sepolicy: Allow libperfmgr to read and write to sde-crtc-*
Change-Id: I5abde96b2a6bdde7f7b5cd577f878ce93b8dc8b3
2024-07-21 20:16:00 +05:30
Anand S
3092927bb5
sm6375-common: sepolicy: Address some denials for fogos
Change-Id: I3ab1949c10eb3313a3fb701bbddeffb4bf15237c
2024-07-21 20:16:00 +05:30
Anand S
8d0f27975b
sm6375-common: Remove in-tree Livedisplay HAL
Change-Id: I6f6ccfdc816c2bfb7267f13b6e6787014282f446
2024-07-21 20:16:00 +05:30
Bruno Martins
4ec7aee975
sm6375-common: Use common libqti-perfd-client and power-libperfmgr
Change-Id: I22d6b35c72629553817005deaefcae60abc72cfd
2024-07-20 20:16:00 +05:30
Anand S
1f580a9b66
sm6375-common: sepolicy: Label fogos touch hal
Change-Id: I02521006113b41d985ce5d84a1acf54596401b97
2024-07-19 20:16:00 +05:30
Anand S
876282f246
sm6375-common: sepolicy: Drop duplicate genfs entries
Change-Id: I26195c1faa12dd2eaf8d7c5b0ec6487d82527f72
2024-07-19 20:16:00 +05:30
EcrosoftXiao
e03aec7112
sm6375-common: Switch to Thermal 2.0 mock
* QTI Thermal couldn't read the temperature for some reason
* sepolicy: Adjust sepolicy for thermal

Change-Id: Idea1bcdea070913ef35b699fafd1242d740453a9
2024-07-19 20:16:00 +05:30
Vivekachooz
b96db6ee48
sm6375-common: Update permissions for powerhal
Change-Id: Id43043a24dd19eab0234def5121e811d18174096
2024-07-18 20:16:00 +05:30
Sugakesshaa
ca771e2087
sm6375-common: sepolicy: Allow libperfmgr to write to proc_sched nodes
Change-Id: Ic8d9f03befb2ea5722d340d9f2b797b1cf8f0f50
2024-07-18 20:16:00 +05:30
Arian
4bbb9ac9bc
sm6375-common: sepolicy: Address pixel power HAL denials
Change-Id: I7327bd54c0d12fde03472695a5598d2a3d22f716
2024-07-18 20:16:00 +05:30
Anand S
3addce0935
sm6375-common: sepolicy: Allow hal_health_default to access sysfs
Change-Id: I5d09337f045ee6f523d6b534113f4b563f7f1e23
2024-07-16 12:56:42 +05:30
Anand S
bfce9c1935
sm6375-common: sepolicy: Label goodix fingerprint init service
Change-Id: I4d8ac2418fcd44473a6ff0077208b3792d774520
2024-07-16 12:56:42 +05:30
UtsavBalar1231
397da7dd83
sm6375-common: sepolicy: Allow setting read_ahead_kb on /data partition
Change-Id: I2ac458dfcad8bb51b3c25da9dc03bdea91540ca3
Signed-off-by: UtsavBalar1231 <utsavbalar1231@gmail.com>
2024-07-16 12:56:42 +05:30
Sevenrock
3969c8d426
sm6375-common: sepolicy: Allow system_server to read vendor_sysfs_battery_supply
Change-Id: Iac8be40b8cc928a378d415f5c36e0cef249c3aab
2024-07-16 12:56:42 +05:30
Jack Pham
e61118e7a9
sm6375-common: sepolicy: Allow init (recovery) to access USB sysfs
Add genfs contexts for USB sysfs entry that control the operational
mode and assign them as vendor_sysfs_usb_device type.

Change-Id: Ic1f0c5e9237848ac47cebca6e2cbbe9bd25270ad
2024-07-16 12:56:42 +05:30
Julian Veit
2753c420ea
sm6375-common: sepolicy: Allow bootanim and surfaceflinger call vendor_hal_qspmhal_default
Original patch:
df6b106517

Change-Id: I70e2fb64d94ce551b751028ff04af6ed95f68f09
2024-07-16 12:56:42 +05:30
Julian Veit
782f2994b9
sm6375-common: sepolicy: Allow vendor_hal_perf_default ro access to sysfs
Original patch:
3e30e78ca0

Change-Id: I29004d6c688aafb107e2c50037740a347e5e7694
2024-07-16 12:56:42 +05:30
Anand S
4feee76329
sm6375-common: sepolicy: Label bangkk lineage touch hal
Change-Id: I3d39dfd159c2002edd39c1e198a2ee2064b36927
2024-07-05 12:56:42 +05:30
Anand S
df686badb7
sm6375-common: sepolicy: Label more wakeup nodes
Change-Id: I84b6bbf9851ff9d176e3c46519af591a8351656c
2024-07-05 12:56:42 +05:30
Anand S
2589a27276
sm6375-common: sepolicy: Address charge control related denials
* avc:  denied  { getattr } for  comm="thermal-engine" path="/sys/devices/platform/soc/soc:mmi_chrg_manager/power_supply/mmi_chrg_manager/charge_control_limit_max" dev="sysfs" ino=82898 scontext=u:r:vendor_thermal-engine:s0 tcontext=u:object_r:sysfs:s0 tclass=file permissive=0

Change-Id: Icde2cfa035bc13e71280c844db7ee0278c7284dd
2024-07-05 12:56:42 +05:30
inferno0230
017bc6073d
sm6375-common: sepolicy: Address battery related denials
Signed-off-by: inferno0230 <mail@inferno0230.in>

Change-Id: Iff32fd8fed9143524bf4a1747c5b3cd4d330cd05
2024-07-04 12:56:42 +05:30
TALU
fa18dfa143
sm6375-common: sepolicy: Label the new Samsung NFC HAL
Change-Id: I7a8ba9bc0bc78f8426c8cb94311498f3735eca3d
2024-07-04 12:56:42 +05:30
Anand S
a16fe13425
sm6375-common: Adapt sepolicies for moto sm6375
Change-Id: I1b49afc2d8148ee25a36e99385c28a257117814f
2024-07-04 12:56:42 +05:30
Marc Bourgoin
c236e4ee06 sm7325-common: Address some sepolicy denials from xpeng
Change-Id: I6e6c8f774f800628f52dde1b081956f8d17f30bd
2024-06-22 03:11:20 +00:00
Nolen Johnson
d40cb2d754 sm7325-common: Rename chargeonly_data_file to chargeonly_vendor_data_file
* For some magical reason, the naming (and not just associations)
  matter as of a few days ago - no clue why.

Change-Id: I6cf12b455dbf460a9be607d796af3536093e8427
2024-03-05 22:20:15 -05:00
Nolen Johnson
3c3de6b813 sm7325-common: sepolicy: Allow some processes to kill themselves
Change-Id: I6b51f99d76ba82aca9498d8218373958b8df938d
2024-01-24 01:54:45 +00:00
Nolen Johnson
c2e8af7507 Revert "sm7325-common: sepolicy: address schedtune*"
This reverts commit 55772d45005910e6764c0b457e840f1cc85f1f71.

Reason for revert: Brought to my attention that this is way too broad. Agree.

Change-Id: I3e2fec355960844d2af8af3212780245fc53d66b
(cherry picked from commit 5cd03a02dcc34e31fe40c15ec9c7217b66089234)
2023-11-03 17:31:12 +00:00