From 362d6ff1b881fafa044b4cbc4428a4cc4caa1938 Mon Sep 17 00:00:00 2001 From: Eric Bae <eric.bae@lge.com> Date: Tue, 19 Jul 2016 14:30:00 -0700 Subject: [PATCH] allow policy to create a file by vfat (fs_type) for a case using sdcardfs Change-Id: Ia938d73b1a49b9ba4acf906df37095d21edee22e --- untrusted_app.te | 1 + 1 file changed, 1 insertion(+) diff --git a/untrusted_app.te b/untrusted_app.te index 8289dce1c..23c933bc1 100644 --- a/untrusted_app.te +++ b/untrusted_app.te @@ -151,6 +151,7 @@ neverallow untrusted_app { fs_type -fuse # sdcard -sdcardfs # sdcard + -vfat file_type -app_data_file # The apps sandbox itself -media_rw_data_file # Internal storage. Known that apps can -- GitLab