allow hal_keymaster_default firmware_file:dir search; allow hal_keymaster_default firmware_file:file read;