universal7570: import sepolicy from 7870

The sepolicy before seems to be broken

Change-Id: I890a28429f03e47a183a0a0b755987f3495994c3
This commit is contained in:
Hendra Manudinata 2021-03-13 05:07:20 +07:00
parent f22a0e7cdd
commit f0e4521a9f
No known key found for this signature in database
GPG key ID: 8DB7A83A9B4EE2D6
53 changed files with 1095 additions and 58 deletions

16
sepolicy/fingerprintd.te Normal file
View file

@ -0,0 +1,16 @@
# allow hal_fingerprint_default to communicate with various devices
binder_call(system_app, hal_fingerprint_default)
# kernel fp device
allow hal_fingerprint_default fingerprint_device:chr_file rw_file_perms;
# secure memory device
allow hal_fingerprint_default secmem_device:chr_file rw_file_perms;
# trust zone device
allow hal_fingerprint_default tee_device:chr_file rw_file_perms;
allow hal_fingerprint_default tee:unix_stream_socket connectto;
# /data/biometrics/*
# allow hal_fingerprint_default fingerprintd_data_file:dir create_dir_perms;
# allow hal_fingerprint_default fingerprintd_data_file:file create_file_perms;