Skip to content
Snippets Groups Projects
Commit ff2bf403 authored by Nick Kralevich's avatar Nick Kralevich
Browse files

drop install_recovery cache_recovery_file rules

The auditallow for install_recovery accessing cache_recovery_files
hasn't triggered, so drop the rules as they don't appear to be
used.

Change-Id: I74bb152b6c829612594c647674907e16783fa477
parent 6937aa93
No related branches found
No related tags found
No related merge requests found
......@@ -21,11 +21,8 @@ allow install_recovery boot_block_device:blk_file r_file_perms;
allow install_recovery recovery_block_device:blk_file rw_file_perms;
# Create and delete /cache/saved.file
allow install_recovery { cache_file cache_recovery_file }:dir rw_dir_perms;
allow install_recovery { cache_file cache_recovery_file }:file create_file_perms;
auditallow install_recovery cache_recovery_file:dir rw_dir_perms;
auditallow install_recovery cache_recovery_file:file create_file_perms;
allow install_recovery cache_file:dir rw_dir_perms;
allow install_recovery cache_file:file create_file_perms;
# Write to /proc/sys/vm/drop_caches
allow install_recovery proc_drop_caches:file w_file_perms;
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment