From 71016f7cc8f595f69a7cd1b8cde4ffdbc2d26bd7 Mon Sep 17 00:00:00 2001
From: Vinit Deshpande <vinitd@google.com>
Date: Tue, 17 Nov 2015 18:21:11 -0800
Subject: [PATCH] Allow system_server access to system logs

This is enabled for debugging purposes only. Since
kernel buffer for logs is small, this will allow
external services to capture a bit of data so it
can be reported later.

Change-Id: I588eb91159e6aad07ead9afab9759764b8b3520d
---
 system_server.te | 3 +++
 1 file changed, 3 insertions(+)

diff --git a/system_server.te b/system_server.te
index 21da65143..50d25f3e0 100644
--- a/system_server.te
+++ b/system_server.te
@@ -432,6 +432,9 @@ userdebug_or_eng(`
   # Allow system server to create and write method traces in /data/misc/trace.
   allow system_server method_trace_data_file:dir w_dir_perms;
   allow system_server method_trace_data_file:file { create w_file_perms };
+
+  # Allow system server to read dmesg
+  allow system_server kernel:system syslog_read;
 ')
 
 ###
-- 
GitLab