diff options
author | Nick Kralevich <nnk@google.com> | 2016-03-29 15:37:20 -0700 |
---|---|---|
committer | Nick Kralevich <nnk@google.com> | 2016-03-29 15:37:20 -0700 |
commit | c81ebe522c66dd6e6ef4419ecc7737e2e1740d59 (patch) | |
tree | 4174530cbf7f483e0ebdcfca48beef00f2d5e63c /binderservicedomain.te | |
parent | 6937aa93ac0a36f19cb13b81a282dedcad324be5 (diff) | |
download | sepolicy-c81ebe522c66dd6e6ef4419ecc7737e2e1740d59.tar.gz |
These files have been moved to system/sepolicy.
Bug: 27875478
Change-Id: I057784af0e9f6e43cd9a22ffce26fd63acccf98b
Diffstat (limited to 'binderservicedomain.te')
-rw-r--r-- | binderservicedomain.te | 21 |
1 files changed, 0 insertions, 21 deletions
diff --git a/binderservicedomain.te b/binderservicedomain.te deleted file mode 100644 index 36993eb..0000000 --- a/binderservicedomain.te +++ /dev/null @@ -1,21 +0,0 @@ -# Rules common to all binder service domains - -# Allow dumpstate to collect information from binder services -allow binderservicedomain dumpstate:fd use; -allow binderservicedomain dumpstate:unix_stream_socket { read write getopt getattr }; -allow binderservicedomain shell_data_file:file { getattr write }; - -# Allow dumpsys to work from adb shell or the serial console -allow binderservicedomain devpts:chr_file rw_file_perms; -allow binderservicedomain console_device:chr_file rw_file_perms; - -# Receive and write to a pipe received over Binder from an app. -allow binderservicedomain appdomain:fd use; -allow binderservicedomain appdomain:fifo_file write; - -# allow all services to run permission checks -allow binderservicedomain permission_service:service_manager find; - -allow binderservicedomain keystore:keystore_key { get_state get insert delete exist list sign verify }; - -use_keystore(binderservicedomain) |