From 238a654f4ac0ce69a8e88d96adb55667c274d91c Mon Sep 17 00:00:00 2001 From: Mark Salyzyn <salyzyn@google.com> Date: Tue, 1 Apr 2014 11:02:57 -0700 Subject: [PATCH] logd: add auditd Change-Id: Iec4bfc08ced20c0d4c74e07baca6cff812c9ba00 --- logd.te | 5 ++++- 1 file changed, 4 insertions(+), 1 deletion(-) diff --git a/logd.te b/logd.te index 796f7bbee..782d58eee 100644 --- a/logd.te +++ b/logd.te @@ -4,7 +4,10 @@ type logd_exec, exec_type, file_type; init_daemon_domain(logd) -allow logd self:capability { setuid setgid sys_nice }; +allow logd self:capability { setuid setgid sys_nice audit_control }; +allow logd self:capability2 syslog; +allow logd self:netlink_audit_socket { create_socket_perms nlmsg_write }; +allow logd kernel:system syslog_read; r_dir_file(logd, domain) -- GitLab