From dd156fc377c2892752fb5b38c5cca4c3e7484054 Mon Sep 17 00:00:00 2001 From: Andres Morales <anmorales@google.com> Date: Mon, 13 Apr 2015 12:21:08 -0700 Subject: [PATCH] Allow gatekeeperd to use keystore needs to call addAuthToken Change-Id: If519df61448f19dfafab254668c17eea6c161ea4 --- gatekeeperd.te | 3 +-- 1 file changed, 1 insertion(+), 2 deletions(-) diff --git a/gatekeeperd.te b/gatekeeperd.te index 5cc7ceaf0..4a50e2cd8 100644 --- a/gatekeeperd.te +++ b/gatekeeperd.te @@ -10,8 +10,7 @@ allow gatekeeperd tee_device:chr_file rw_file_perms; allow gatekeeperd gatekeeper_service:service_manager { add find }; # Need to add auth tokens to KeyStore -allow gatekeeperd keystore_service:service_manager find; -binder_call(gatekeeperd, keystore) +use_keystore(gatekeeperd) allow gatekeeperd keystore:keystore_key { add_auth }; # For permissions checking -- GitLab