Skip to content
Snippets Groups Projects
Commit 616c787b authored by dcashman's avatar dcashman
Browse files

Remove service_manager_type auditing of shell source domain.

The shell domain is already allowed to list and find all service_manager
objects, so extra auditing is pointless.

Bug: 18106000
Change-Id: I8dbf674fa7ea7b05e48e5bbc352b0c9593f2b627
parent 74df7f59
No related branches found
No related tags found
No related merge requests found
......@@ -167,7 +167,7 @@ allow domain asec_public_file:file r_file_perms;
allow domain { asec_public_file asec_apk_file }:dir r_dir_perms;
# log all access to specified system_server services
auditallow { domain -service_manager_local_audit } tmp_system_server_service:service_manager {list find };
auditallow { domain -shell -service_manager_local_audit } tmp_system_server_service:service_manager {list find };
###
### neverallow rules
......
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment