From 238a654f4ac0ce69a8e88d96adb55667c274d91c Mon Sep 17 00:00:00 2001
From: Mark Salyzyn <salyzyn@google.com>
Date: Tue, 1 Apr 2014 11:02:57 -0700
Subject: [PATCH] logd: add auditd

Change-Id: Iec4bfc08ced20c0d4c74e07baca6cff812c9ba00
---
 logd.te | 5 ++++-
 1 file changed, 4 insertions(+), 1 deletion(-)

diff --git a/logd.te b/logd.te
index 796f7bbee..782d58eee 100644
--- a/logd.te
+++ b/logd.te
@@ -4,7 +4,10 @@ type logd_exec, exec_type, file_type;
 
 init_daemon_domain(logd)
 
-allow logd self:capability { setuid setgid sys_nice };
+allow logd self:capability { setuid setgid sys_nice audit_control };
+allow logd self:capability2 syslog;
+allow logd self:netlink_audit_socket { create_socket_perms nlmsg_write };
+allow logd kernel:system syslog_read;
 
 r_dir_file(logd, domain)
 
-- 
GitLab