Skip to content
Snippets Groups Projects
Commit fb635166 authored by Lorenzo Colitti's avatar Lorenzo Colitti Committed by Android Git Automerger
Browse files

am b32448c9: Merge "Allow clatd to read from packet sockets and write to raw sockets"

* commit 'b32448c9':
  Allow clatd to read from packet sockets and write to raw sockets
parents 65ad8086 b32448c9
No related branches found
No related tags found
No related merge requests found
...@@ -15,12 +15,12 @@ allow clatd netd:udp_socket { read write }; ...@@ -15,12 +15,12 @@ allow clatd netd:udp_socket { read write };
allow clatd netd:unix_stream_socket { read write }; allow clatd netd:unix_stream_socket { read write };
allow clatd netd:unix_dgram_socket { read write }; allow clatd netd:unix_dgram_socket { read write };
allow clatd self:capability { net_admin setuid setgid }; allow clatd self:capability { net_admin net_raw setuid setgid };
# TODO: Run clatd in vpn group to avoid need for this on /dev/tun. # TODO: Run clatd in vpn group to avoid need for this on /dev/tun.
allow clatd self:capability dac_override; allow clatd self:capability dac_override;
allow clatd self:netlink_route_socket nlmsg_write; allow clatd self:netlink_route_socket nlmsg_write;
allow clatd self:tun_socket create_socket_perms; allow clatd self:{ packet_socket rawip_socket tun_socket } create_socket_perms;
allow clatd tun_device:chr_file rw_file_perms; allow clatd tun_device:chr_file rw_file_perms;
allow clatd proc_net:file rw_file_perms;; allow clatd proc_net:file rw_file_perms;;
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Please register or to comment