Skip to content
Snippets Groups Projects
Commit 1d401545 authored by Jerry Zhang's avatar Jerry Zhang
Browse files

Add functionfs access to system_server.

UsbDeviceManager in system_server now
helps set up the endpoint files.

Bug: 72877174
Test: No selinux denials
Change-Id: I96b11ee68799ac29b756d2034e7f5e4660dbed98
parent 17d008ae
No related branches found
No related tags found
No related merge requests found
...@@ -105,7 +105,8 @@ full_treble_only(` ...@@ -105,7 +105,8 @@ full_treble_only(`
-adbd -adbd
-init -init
-mediaprovider -mediaprovider
}functionfs:file no_rw_file_perms; -system_server
} functionfs:file no_rw_file_perms;
# usbfs and binfmt_miscfs # usbfs and binfmt_miscfs
neverallow { neverallow {
......
...@@ -761,6 +761,10 @@ userdebug_or_eng(` ...@@ -761,6 +761,10 @@ userdebug_or_eng(`
allow system_server mediaextractor_update_service:service_manager find; allow system_server mediaextractor_update_service:service_manager find;
') ')
# UsbDeviceManager uses /dev/usb-ffs
allow system_server functionfs:dir search;
allow system_server functionfs:file rw_file_perms;
### ###
### Neverallow rules ### Neverallow rules
### ###
......
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment