From 513d77b5cb976af0052b0e152cddf0ccb001d9f2 Mon Sep 17 00:00:00 2001 From: dcashman <dcashman@google.com> Date: Wed, 1 Apr 2015 14:45:45 -0700 Subject: [PATCH] Remove obsolete system_server auditallow logging. system_server no longer has universal service_manager_type permissions and so no longer needs the auditallow rules therewith associated. Change-Id: I1e6584c120f6fc464a4bf6b377d9d7ea90441477 --- system_server.te | 15 --------------- 1 file changed, 15 deletions(-) diff --git a/system_server.te b/system_server.te index bec8ec424..c80e1859c 100644 --- a/system_server.te +++ b/system_server.te @@ -367,21 +367,6 @@ allow system_server system_server_service:service_manager { add find }; allow system_server surfaceflinger_service:service_manager find; allow system_server tmp_system_server_service:service_manager { add find }; -# TODO: Remove. Make up for previously lacking auditing. -allow system_server service_manager_type:service_manager find; -auditallow system_server { - service_manager_type - -drmserver_service - -healthd_service - -keystore_service - -mediaserver_service - -nfc_service - -radio_service - -system_server_service - -surfaceflinger_service - -tmp_system_server_service -}:service_manager find; - service_manager_local_audit_domain(system_server) auditallow system_server { tmp_system_server_service -- GitLab