sdm845-common: sepolicy: Transition pocketmode app to its own domain
Change-Id: Id87176c2430e49851a6c65ab3490ad59ea1764a2
This commit is contained in:
parent
5fc97900ac
commit
d50c6c07ab
3 changed files with 14 additions and 2 deletions
13
sepolicy/private/pocketmode_app.te
Normal file
13
sepolicy/private/pocketmode_app.te
Normal file
|
@ -0,0 +1,13 @@
|
|||
type pocketmode_app, domain;
|
||||
|
||||
app_domain(pocketmode_app)
|
||||
|
||||
# Allow pocketmode_app to find app_api_service
|
||||
allow pocketmode_app app_api_service:service_manager find;
|
||||
|
||||
# Allow pocketmode_app read and write /data/data subdirectory
|
||||
allow pocketmode_app system_app_data_file:dir create_dir_perms;
|
||||
allow pocketmode_app system_app_data_file:{ file lnk_file } create_file_perms;
|
||||
|
||||
# Allow pocketmode_app to write to sysfs_fpc_proximity
|
||||
allow pocketmode_app sysfs_fpc_proximity:file { w_file_perms getattr };
|
1
sepolicy/private/seapp_contexts
Normal file
1
sepolicy/private/seapp_contexts
Normal file
|
@ -0,0 +1 @@
|
|||
user=system seinfo=platform name=org.lineageos.pocketmode domain=pocketmode_app type=system_app_data_file
|
|
@ -1,2 +0,0 @@
|
|||
# Pocketmode
|
||||
allow system_app sysfs_fpc_proximity:file { w_file_perms getattr };
|
Loading…
Reference in a new issue