Skip to content
Snippets Groups Projects
Commit 0406189c authored by dcashman's avatar dcashman Committed by Android (Google) Code Review
Browse files

Merge "Enable selinux read_policy for adb pull." into lmp-dev

parents b0a99513 309cc668
No related branches found
No related tags found
No related merge requests found
......@@ -68,3 +68,5 @@ allow adbd appdomain:unix_stream_socket connectto;
# ndk-gdb invokes adb pull of app_process, linker, and libc.so.
allow adbd zygote_exec:file r_file_perms;
allow adbd system_file:file r_file_perms;
allow adbd kernel:security read_policy;
......@@ -170,8 +170,6 @@ allow appdomain runas_exec:file getattr;
# Check SELinux policy and contexts.
selinux_check_access(appdomain)
selinux_check_context(appdomain)
# Enable reading of current selinux policy file
allow appdomain kernel:security read_policy;
# Validate that each process is running in the correct security context.
allow appdomain domain:process getattr;
......
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Please register or to comment