Creates a new permission for /cache/recovery
This permission was created mostly for dumpstate (so it can include recovery files on bugreports when an OTA fails), but it was applied to uncrypt and recovery as well (since it had a wider access before). Grant access to cache_recovery_file where we previously granted access to cache_file. Add auditallow rules to determine if this is really needed. BUG: 25351711 Change-Id: I07745181dbb4f0bde75694ea31b3ab79a4682f18
Showing
- app.te 1 addition, 0 deletionsapp.te
- domain.te 1 addition, 1 deletiondomain.te
- domain_deprecated.te 8 additions, 3 deletionsdomain_deprecated.te
- dumpstate.te 4 additions, 0 deletionsdumpstate.te
- file.te 2 additions, 0 deletionsfile.te
- file_contexts 1 addition, 0 deletionsfile_contexts
- install_recovery.te 5 additions, 2 deletionsinstall_recovery.te
- platform_app.te 6 additions, 2 deletionsplatform_app.te
- priv_app.te 5 additions, 2 deletionspriv_app.te
- recovery.te 3 additions, 3 deletionsrecovery.te
- system_server.te 3 additions, 3 deletionssystem_server.te
- uncrypt.te 3 additions, 3 deletionsuncrypt.te
- untrusted_app.te 2 additions, 2 deletionsuntrusted_app.te
Loading
Please register or sign in to comment