From 5c9f9efba68a8de6123eaa341be6dce4b483fd44 Mon Sep 17 00:00:00 2001 From: Diogo Ferreira Date: Mon, 1 Dec 2014 14:33:51 +0000 Subject: [PATCH] sepolicy: Fix permissions for service.adb.tcp.port This makes the rule more specific by overriding the upstream sepolicy. Also adds the adbd context which is necessary for "adb tcpip". Change-Id: Ia17eb56fc1682ab248764329e88eebd2a4075c97 --- sepolicy/adbd.te | 1 + sepolicy/property_contexts | 2 +- sepolicy/sepolicy.mk | 1 + 3 files changed, 3 insertions(+), 1 deletion(-) create mode 100644 sepolicy/adbd.te diff --git a/sepolicy/adbd.te b/sepolicy/adbd.te new file mode 100644 index 00000000..39a87aaa --- /dev/null +++ b/sepolicy/adbd.te @@ -0,0 +1 @@ +allow adbd adbtcp_prop:property_service set; diff --git a/sepolicy/property_contexts b/sepolicy/property_contexts index dc77194d..e5566dc2 100644 --- a/sepolicy/property_contexts +++ b/sepolicy/property_contexts @@ -1 +1 @@ -service.adb.tcp. u:object_r:adbtcp_prop:s0 +service.adb.tcp.port u:object_r:adbtcp_prop:s0 diff --git a/sepolicy/sepolicy.mk b/sepolicy/sepolicy.mk index a08e74a3..1a9b3434 100644 --- a/sepolicy/sepolicy.mk +++ b/sepolicy/sepolicy.mk @@ -14,6 +14,7 @@ BOARD_SEPOLICY_UNION += \ seapp_contexts \ service_contexts \ auditd.te \ + adbd.te \ healthd.te \ hostapd.te \ installd.te \