diff --git a/sepolicy/private/untrusted_app.te b/sepolicy/private/untrusted_app.te new file mode 100644 index 0000000..478403a --- /dev/null +++ b/sepolicy/private/untrusted_app.te @@ -0,0 +1 @@ +allow untrusted_app zygote:unix_stream_socket { getopt }; diff --git a/sepolicy/private/updater_app.te b/sepolicy/private/updater_app.te new file mode 100644 index 0000000..f4ae8f7 --- /dev/null +++ b/sepolicy/private/updater_app.te @@ -0,0 +1 @@ +allow updater_app zygote:unix_stream_socket { getopt }; diff --git a/sepolicy/vendor/mediaprovider.te b/sepolicy/vendor/mediaprovider.te new file mode 100644 index 0000000..ee80bb9 --- /dev/null +++ b/sepolicy/vendor/mediaprovider.te @@ -0,0 +1 @@ +allow mediaprovider zygote:unix_stream_socket { getopt }; diff --git a/sepolicy/vendor/platform_app.te b/sepolicy/vendor/platform_app.te new file mode 100644 index 0000000..3e55585 --- /dev/null +++ b/sepolicy/vendor/platform_app.te @@ -0,0 +1 @@ +allow platform_app zygote:unix_stream_socket { getopt }; \ No newline at end of file diff --git a/sepolicy/vendor/radio.te b/sepolicy/vendor/radio.te index 4670c6a..1631645 100644 --- a/sepolicy/vendor/radio.te +++ b/sepolicy/vendor/radio.te @@ -1 +1,2 @@ get_prop(radio, vendor_audio_prop) +allow radio zygote:unix_stream_socket { getopt }; \ No newline at end of file diff --git a/sepolicy/vendor/shell.te b/sepolicy/vendor/shell.te new file mode 100644 index 0000000..78a1e53 --- /dev/null +++ b/sepolicy/vendor/shell.te @@ -0,0 +1 @@ +allow shell zygote:unix_stream_socket { getopt }; diff --git a/sepolicy/vendor/traceur_app.te b/sepolicy/vendor/traceur_app.te new file mode 100644 index 0000000..807281d --- /dev/null +++ b/sepolicy/vendor/traceur_app.te @@ -0,0 +1 @@ +allow traceur_app zygote:unix_stream_socket { getopt }; diff --git a/sepolicy/vendor/untrusted_app_27.te b/sepolicy/vendor/untrusted_app_27.te new file mode 100644 index 0000000..e437c04 --- /dev/null +++ b/sepolicy/vendor/untrusted_app_27.te @@ -0,0 +1 @@ +allow untrusted_app_27 zygote:unix_stream_socket { getopt }; diff --git a/sepolicy/vendor/untrusted_app_29.te b/sepolicy/vendor/untrusted_app_29.te new file mode 100644 index 0000000..b64c6f0 --- /dev/null +++ b/sepolicy/vendor/untrusted_app_29.te @@ -0,0 +1 @@ +allow untrusted_app_29 zygote:unix_stream_socket { getopt };