aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorTreehugger Robot2018-04-12 11:23:20 -0500
committerGerrit Code Review2018-04-12 11:23:20 -0500
commit45c72ddfcf2eb6f40b4b77600533576c8b02e452 (patch)
treea12910023b9f8bd67ba08c32af3602f00de52314
parente0163411f805b3a9cc77472739e62d8380d0a996 (diff)
parent9dc1d5381ff01fd64ebf837ae4fbd770e214b3fc (diff)
downloadsystem-sepolicy-45c72ddfcf2eb6f40b4b77600533576c8b02e452.tar.gz
system-sepolicy-45c72ddfcf2eb6f40b4b77600533576c8b02e452.tar.xz
system-sepolicy-45c72ddfcf2eb6f40b4b77600533576c8b02e452.zip
Merge "priv_app: remove more logspam"
-rw-r--r--private/bug_map2
-rw-r--r--private/priv_app.te4
2 files changed, 3 insertions, 3 deletions
diff --git a/private/bug_map b/private/bug_map
index eee9eaae..8022d044 100644
--- a/private/bug_map
+++ b/private/bug_map
@@ -1,6 +1,4 @@
1platform_app nfc_data_file dir 74331887 1platform_app nfc_data_file dir 74331887
2priv_app sysfs dir 72749888
3priv_app sysfs_android_usb file 72749888
4priv_app system_data_file dir 72811052 2priv_app system_data_file dir 72811052
5storaged storaged capability 77634061 3storaged storaged capability 77634061
6system_server crash_dump process 73128755 4system_server crash_dump process 73128755
diff --git a/private/priv_app.te b/private/priv_app.te
index 887f5be0..0841c41f 100644
--- a/private/priv_app.te
+++ b/private/priv_app.te
@@ -140,13 +140,15 @@ unix_socket_connect(priv_app, traced_producer, traced)
140# suppress denials for non-API accesses. 140# suppress denials for non-API accesses.
141dontaudit priv_app exec_type:file getattr; 141dontaudit priv_app exec_type:file getattr;
142dontaudit priv_app device:dir read; 142dontaudit priv_app device:dir read;
143dontaudit priv_app net_dns_prop:file read;
143dontaudit priv_app proc:file read; 144dontaudit priv_app proc:file read;
144dontaudit priv_app proc_interrupts:file read; 145dontaudit priv_app proc_interrupts:file read;
145dontaudit priv_app proc_modules:file read; 146dontaudit priv_app proc_modules:file read;
146dontaudit priv_app proc_stat:file read; 147dontaudit priv_app proc_stat:file read;
147dontaudit priv_app proc_version:file read; 148dontaudit priv_app proc_version:file read;
149dontaudit priv_app sysfs:dir read;
150dontaudit priv_app sysfs_android_usb:file read;
148dontaudit priv_app wifi_prop:file read; 151dontaudit priv_app wifi_prop:file read;
149dontaudit priv_app net_dns_prop:file read;
150 152
151# allow privileged apps to use UDP sockets provided by the system server but not 153# allow privileged apps to use UDP sockets provided by the system server but not
152# modify them other than to connect 154# modify them other than to connect