Skip to content
Snippets Groups Projects
  • hqjiang's avatar
    4c06d273
    Target the denials/policies over qtaguid file and device: 1. Relabel... · 4c06d273
    hqjiang authored
    Target the denials/policies over qtaguid file and device: 1. Relabel /proc/net/xt_qtaguid/ctrl from "qtaguid" to "qtaguid_proc"; 2. Label /dev/xt_qtaguid with "qtaguid_device"; 3. Allow mediaserver read/[write] to qtaguid_proc and qtaguid_device; 4. Allow media apps read/[write] to qtaguid_proc and qtaguid_device; 5. Allow system read/[write] to qtaguid_proc and qtaguid_device.
    
    Actually, some of policies related to qtaguid have been there already, but
    we refind existing ones and add new ones.
    4c06d273
    History
    Target the denials/policies over qtaguid file and device: 1. Relabel...
    hqjiang authored
    Target the denials/policies over qtaguid file and device: 1. Relabel /proc/net/xt_qtaguid/ctrl from "qtaguid" to "qtaguid_proc"; 2. Label /dev/xt_qtaguid with "qtaguid_device"; 3. Allow mediaserver read/[write] to qtaguid_proc and qtaguid_device; 4. Allow media apps read/[write] to qtaguid_proc and qtaguid_device; 5. Allow system read/[write] to qtaguid_proc and qtaguid_device.
    
    Actually, some of policies related to qtaguid have been there already, but
    we refind existing ones and add new ones.