From 350a603e6c53528444e7be1046cb5199c40aa2e8 Mon Sep 17 00:00:00 2001
From: Jeff Vander Stoep <jeffv@google.com>
Date: Fri, 10 Feb 2017 13:20:52 -0800
Subject: [PATCH] hal_fingerprint: grant read access to /sys

avc: denied { read } for name="modalias" dev="sysfs" ino=17624 scontext=u:r:hal_fingerprint_default:s0 tcontext=u:object_r:sysfs:s0 tclass=file

Test: Marlin builds and boots without this denial.
Bug: 35197529
Change-Id: I3b64db571ac10c843f3765ed557ceac07bc6580e
---
 public/hal_fingerprint.te | 1 +
 1 file changed, 1 insertion(+)

diff --git a/public/hal_fingerprint.te b/public/hal_fingerprint.te
index aa5bf2bef..8405a7ea8 100644
--- a/public/hal_fingerprint.te
+++ b/public/hal_fingerprint.te
@@ -19,3 +19,4 @@ allow hal_fingerprint ion_device:chr_file r_file_perms;
 binder_use(hal_fingerprint);
 
 r_dir_file(hal_fingerprint, cgroup)
+r_dir_file(hal_fingerprint, sysfs)
-- 
GitLab