Skip to content
Snippets Groups Projects
  • Ningyuan Wang's avatar
    781cfd82
    add netlink socket permission for wificond · 781cfd82
    Ningyuan Wang authored
     wificond: type=1400 audit(0.0:43): avc: denied { create } for
     scontext=u:r:wificond:s0 tcontext=u:r:wificond:s0 tclass=netlink_socket
     permissive=1
    
     wificond: type=1400 audit(0.0:44):
     avc: denied { setopt } for scontext=u:r:wificond:s0
     tcontext=u:r:wificond:s0 tclass=netlink_socket permissive=1
    
     wificond: type=1400 audit(0.0:45):
     avc: denied { net_admin } for capability=12 scontext=u:r:wificond:s0
     tcontext=u:r:wificond:s0 tclass=capability permissive=1
    
     wificond: type=1400 audit(0.0:46):
     avc: denied { bind } for scontext=u:r:wificond:s0
     tcontext=u:r:wificond:s0 tclass=netlink_socket permissive=1
    
     wificond: type=1400 audit(0.0:47):
     avc: denied { write } for scontext=u:r:wificond:s0
     tcontext=u:r:wificond:s0 tclass=netlink_socket permissive=1
    
     wificond: type=1400 audit(0.0:48):
     avc: denied { read } for path="socket:[35892]" dev="sockfs" ino=35892
     scontext=u:r:wificond:s0 tcontext=u:r:wificond:s0 tclass=netlink_socket
     permissive=1
    
    TEST=compile and run
    
    Change-Id: I5e1befabca7388d5b2145f49462e5cff872d9f43
    781cfd82
    History
    add netlink socket permission for wificond
    Ningyuan Wang authored
     wificond: type=1400 audit(0.0:43): avc: denied { create } for
     scontext=u:r:wificond:s0 tcontext=u:r:wificond:s0 tclass=netlink_socket
     permissive=1
    
     wificond: type=1400 audit(0.0:44):
     avc: denied { setopt } for scontext=u:r:wificond:s0
     tcontext=u:r:wificond:s0 tclass=netlink_socket permissive=1
    
     wificond: type=1400 audit(0.0:45):
     avc: denied { net_admin } for capability=12 scontext=u:r:wificond:s0
     tcontext=u:r:wificond:s0 tclass=capability permissive=1
    
     wificond: type=1400 audit(0.0:46):
     avc: denied { bind } for scontext=u:r:wificond:s0
     tcontext=u:r:wificond:s0 tclass=netlink_socket permissive=1
    
     wificond: type=1400 audit(0.0:47):
     avc: denied { write } for scontext=u:r:wificond:s0
     tcontext=u:r:wificond:s0 tclass=netlink_socket permissive=1
    
     wificond: type=1400 audit(0.0:48):
     avc: denied { read } for path="socket:[35892]" dev="sockfs" ino=35892
     scontext=u:r:wificond:s0 tcontext=u:r:wificond:s0 tclass=netlink_socket
     permissive=1
    
    TEST=compile and run
    
    Change-Id: I5e1befabca7388d5b2145f49462e5cff872d9f43
wificond.te 590 B