android_device_samsung_msm8.../sepolicy/hal_fingerprint_default.te
Deokgyu Yang b9bf9bca14 gts3l-common: sepolicy: Add some missing policies and add genfs_contexts
Temporarility

Signed-off-by: Deokgyu Yang <secugyu@gmail.com>
Change-Id: I4611d613a38f64fb0156f329983d1d6248f0b37b
2022-02-09 01:19:28 +09:00

33 lines
1.3 KiB
Text

binder_call(hal_fingerprint_default, qfp-daemon)
binder_use(hal_fingerprint_default)
# Allow hal_fingerprint_default to open firmware images
r_dir_file(hal_fingerprint_default, firmware_file)
allow hal_fingerprint_default fp_sensor_device:chr_file rw_file_perms;
allow hal_fingerprint_default tee_device:chr_file rw_file_perms;
allow hal_fingerprint_default firmware_file:file r_file_perms;
allow hal_fingerprint_default efs_file:file r_file_perms;
allow hal_fingerprint_default sec_poc_file:file r_file_perms;
allow hal_fingerprint_default sec_efs_file:dir create_dir_perms;
allow hal_fingerprint_default sec_efs_file:file create_file_perms;
allow hal_fingerprint_default sysfs_fpc:dir r_dir_perms;
allow hal_fingerprint_default sysfs_fpc:file r_file_perms;
allow hal_fingerprint_default sysfs_fpc:lnk_file r_file_perms;
allow hal_fingerprint_default biometrics_vendor_data_file:dir create_dir_perms;
allow hal_fingerprint_default biometrics_vendor_data_file:file create_file_perms;
allow hal_fingerprint_default vendor_data_file:dir create_dir_perms;
allow hal_fingerprint_default vendor_data_file:file create_file_perms;
allow hal_fingerprint_default fingerprintd_data_file:file create_file_perms;
allow hal_fingerprint_default fingerprintd_data_file:dir write;
# Ignore all logging requests
dontaudit hal_fingerprint_default storage_file:dir search;