Skip to content
Snippets Groups Projects
user avatar
Daichi Hirono authored
Previously we published appfuse mount points to apps and apps open
appfuse file by themselves. We changed the design and we don't allow
apps to access appfuse mount point. Instead system server opens a file
on appfuse mount points and passes FD to apps.

The change updates apps and system server policies to adopt new design.

Bug: 29970149
Test: None
Change-Id: I0b35fee9816f61565705eecb88a472754ccffdca
7ae1d237
History
Name Last commit Last update
..
adbd.te
app.te
atrace.te
attributes
audioserver.te
binderservicedomain.te
blkid.te
blkid_untrusted.te
bluetooth.te
bluetoothdomain.te
boot_control_hal.te
bootanim.te
bootstat.te
cameraserver.te
charger.te
clatd.te
cppreopts.te
debuggerd.te
device.te
dex2oat.te
dhcp.te
dnsmasq.te
domain.te
domain_deprecated.te
drmserver.te
dumpstate.te
ephemeral_app.te
file.te
fingerprintd.te
fsck.te
fsck_untrusted.te
gatekeeperd.te
global_macros
hal_allocator.te
hal_audio.te
hal_bluetooth.te
hal_boot.te
hal_contexthub.te
hal_dumpstate.te
hal_fingerprint.te
hal_gatekeeper.te
hal_gnss.te
hal_graphics_allocator.te
hal_graphics_composer.te
hal_health.te
hal_ir.te
hal_light.te
hal_memtrack.te
hal_nfc.te
hal_power.te
hal_sensors.te
hal_telephony.te
hal_thermal.te
hal_vibrator.te
hal_vr.te
hal_wifi.te
healthd.te
hostapd.te
hwservicemanager.te
idmap.te
init.te
inputflinger.te
install_recovery.te
installd.te
ioctl_defines
ioctl_macros
isolated_app.te
kernel.te
keystore.te
lmkd.te
logd.te
logpersist.te
mdnsd.te
mediaanalytics.te
mediacodec.te
mediadrmserver.te
mediaextractor.te
mediaserver.te
mtp.te
net.te
netd.te
neverallow_macros
nfc.te
otapreopt_chroot.te
otapreopt_slot.te
perfprofd.te
platform_app.te
postinstall.te
postinstall_dexopt.te
ppp.te
preopt2cachename.te
priv_app.te
profman.te
property.te
racoon.te
radio.te
recovery.te
recovery_persist.te
recovery_refresh.te
rild.te