From 7cd05645ad1f727fb8a5ed14a43fc8807237f343 Mon Sep 17 00:00:00 2001 From: Mister Oyster Date: Fri, 6 Jan 2017 16:04:16 +0100 Subject: sepolicy: gestures rules --- sepolicy/file.te | 3 +++ sepolicy/file_contexts | 1 + sepolicy/init.te | 3 +++ sepolicy/system_app.te | 2 ++ 4 files changed, 9 insertions(+) diff --git a/sepolicy/file.te b/sepolicy/file.te index 264f973..8c157d5 100644 --- a/sepolicy/file.te +++ b/sepolicy/file.te @@ -144,3 +144,6 @@ type iso9660, fs_type; # data_tmpfs_log type data_tmpfs_log_file, file_type, data_file_type; + +# Gestures +type gesture_sysfs, sysfs_type, file_type; diff --git a/sepolicy/file_contexts b/sepolicy/file_contexts index 37ee87b..d7af884 100644 --- a/sepolicy/file_contexts +++ b/sepolicy/file_contexts @@ -296,6 +296,7 @@ /sys/devices/platform/msensor/driver(/.*)? u:object_r:sysfs_msensor_file:s0 /sys/bus/platform/drivers/mtk-kpd(/.*)? u:object_r:sysfs_keypad_file:s0 /sys/power/vcorefs/pwr_ctrl -- u:object_r:sysfs_vcorefs_pwrctrl:s0 +/sys/devices/platform/mx-gs/gesture_control u:object_r:gesture_sysfs:s0 ############################# diff --git a/sepolicy/init.te b/sepolicy/init.te index e6374dc..eaf63b5 100644 --- a/sepolicy/init.te +++ b/sepolicy/init.te @@ -13,3 +13,6 @@ allow init nvdata_file:dir { write search setattr read create open add_name }; # Operation : Migration # Purpose : for L : add for partition allow init platformblk_device:blk_file setattr; + +# Gestures +allow init gesture_sysfs:file setattr; diff --git a/sepolicy/system_app.te b/sepolicy/system_app.te index abdf5ca..6c83460 100644 --- a/sepolicy/system_app.te +++ b/sepolicy/system_app.te @@ -157,3 +157,5 @@ dontaudit system_app untrusted_app_tmpfs:file write; # Package: android.ui dontaudit system_app radio_data_file:dir search; +# Gestures +allow system_app gesture_sysfs:file rw_file_perms; -- cgit v1.2.3