Added device sepolicy rules for NN HAL data files

Change-Id: I102644d08b0cb228f93a792e6a96bd812329574e
This commit is contained in:
Yida Wang
2018-05-11 13:59:53 -04:00
committed by Gerrit - the friendly Code Review server
parent 58144e09b6
commit 52944cba72
3 changed files with 6 additions and 0 deletions

View File

@@ -129,3 +129,6 @@ type data_qsee_file, file_type, data_file_type;
#TUI Files
type vendor_tui_data_file, file_type, data_file_type;
#NNHAL files
type hal_neuralnetworks_data_file, file_type, data_file_type;

View File

@@ -336,6 +336,7 @@
/sys/devices(/platform)?/soc/[a-f0-9]+/host0/scsi_host/host0(/.*)? u:object_r:sysfs_scsi_host:s0
/data/vendor/media(/.*)? u:object_r:vendor_media_data_file:s0
/data/vendor/mediadrm(/.*)? u:object_r:vendor_mediadrm_data_file:s0
/data/vendor/nnhal(/.*)? u:object_r:hal_neuralnetworks_data_file:s0
/sys/devices(/platform)?/soc/[a-z0-9\.:]+,[a-z0-9\-\_]+/subsys[0-9]+/name u:object_r:sysfs_ssr:s0

View File

@@ -37,5 +37,7 @@ allow hal_neuralnetworks_default ion_device:chr_file r_file_perms;
allow hal_neuralnetworks_default app_data_file:file { read getattr };
allow hal_neuralnetworks_default shell_data_file:file { read getattr };
allow hal_neuralnetworks_default hal_neuralnetworks_data_file:dir create_dir_perms;
allow hal_neuralnetworks_default hal_neuralnetworks_data_file:{ file fifo_file } create_file_perms;
r_dir_file(hal_neuralnetworks_default, adsprpcd_file)