Skip to content
Snippets Groups Projects
Commit ee751c33 authored by Nick Kralevich's avatar Nick Kralevich
Browse files

property.te: delete security_prop

This property is never used.

Test: policy compiles
Change-Id: I43ace92950e1221754db28548031fbbfc0437d7a
parent 7da34af8
No related branches found
No related tags found
No related merge requests found
......@@ -65,7 +65,6 @@ ro.device_owner u:object_r:device_logging_prop:s0
# selinux non-persistent properties
selinux.restorecon_recursive u:object_r:restorecon_prop:s0
selinux. u:object_r:security_prop:s0
# default property context
* u:object_r:default_prop:s0
......
......@@ -229,9 +229,6 @@ neverallow { domain -recovery } self:capability2 mac_admin;
# It is sealed.
neverallow * kernel:security load_policy;
# Only init and the system_server shall use the property_service.
neverallow { domain -init -system_server } security_prop:property_service set;
# Only init prior to switching context should be able to set enforcing mode.
# init starts in kernel domain and switches to init domain via setcon in
# the init.rc, so the setenforce occurs while still in kernel. After
......
......@@ -35,7 +35,6 @@ type powerctl_prop, property_type, core_property_type;
type radio_prop, property_type, core_property_type;
type restorecon_prop, property_type, core_property_type;
type safemode_prop, property_type;
type security_prop, property_type, core_property_type;
type shell_prop, property_type, core_property_type;
type system_prop, property_type, core_property_type;
type system_radio_prop, property_type, core_property_type;
......
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment