mirror of
https://gitee.com/openharmony/security_selinux
synced 2025-02-22 22:01:20 +00:00
commit
a2b30e7f3e
@ -63,6 +63,7 @@ type accesstoken_perm_param, parameter_attr;
|
||||
type ffrt_param, parameter_attr;
|
||||
type hiviewdfx_profiler_param, parameter_attr;
|
||||
type netmanager_base_param, parameter_attr;
|
||||
type bluetooth_param, parameter_attr;
|
||||
|
||||
allow init parameter_attr:file relabelto;
|
||||
allow parameter_attr tmpfs:filesystem associate;
|
||||
|
@ -62,3 +62,4 @@ persist.pasteboard. u:object_r:pasteboard_param:s0
|
||||
persist.time. u:object_r:time_param:s0
|
||||
persist.netmanager_base. u:object_r:netmanager_base_param:s0
|
||||
accesstoken.permission. u:object_r:accesstoken_perm_param:s0
|
||||
persist.bluetooth. u:object_r:bluetooth_param:s0
|
||||
|
@ -191,3 +191,5 @@ allow bluetooth_service sa_pulseaudio_audio_service:samgr_class { get };
|
||||
#bluetooth_service
|
||||
allow bluetooth_service resource_schedule_service:binder { call };
|
||||
|
||||
allow bluetooth_service persist_param:parameter_service set;
|
||||
|
||||
|
@ -42,6 +42,7 @@ allow devinfo_public_param tmpfs:filesystem associate;
|
||||
allow telephony_param tmpfs:filesystem associate;
|
||||
allow useriam_fwkready_param tmpfs:filesystem associate;
|
||||
allow netmanager_base_param tmpfs:filesystem associate;
|
||||
allow bluetooth_param tmpfs:filesystem associate;
|
||||
|
||||
allow init servicectrl_param:file { map open read relabelto relabelfrom };
|
||||
allow init servicectrl_reboot_param:file { map open read relabelto relabelfrom };
|
||||
@ -53,6 +54,7 @@ allow init devinfo_public_param:file { map open read relabelto relabelfrom };
|
||||
allow init telephony_param:file { map open read relabelto relabelfrom };
|
||||
allow init useriam_fwkready_param:file { map open read relabelto relabelfrom };
|
||||
allow init netmanager_base_param:file { map open read relabelto relabelfrom };
|
||||
allow init bluetooth_param:file { map open read relabelto relabelfrom };
|
||||
|
||||
#for set
|
||||
allow { init samgr hdf_devmgr } servicectrl_param:parameter_service { set };
|
||||
@ -66,6 +68,7 @@ allow { sadomain hdfdomain nativedomain } bootevent_param:parameter_service { se
|
||||
allow { init telephony_sa riladapter_host } telephony_param:parameter_service { set };
|
||||
allow { useriam } useriam_fwkready_param:parameter_service { set };
|
||||
allow { init netmanager } netmanager_base_param:parameter_service { set };
|
||||
allow { init bluetooth_service } bluetooth_param:parameter_service { set };
|
||||
|
||||
#for read
|
||||
allow { domain -limit_domain } servicectrl_param:file { map open read };
|
||||
@ -77,6 +80,7 @@ allow { domain -limit_domain } devinfo_public_param:file { map open read };
|
||||
allow { domain -limit_domain } telephony_param:file { map open read };
|
||||
allow { domain -limit_domain } useriam_fwkready_param:file { map open read };
|
||||
allow { domain -limit_domain } netmanager_base_param:file { map open read };
|
||||
allow { domain -limit_domain } bluetooth_param:file { map open read };
|
||||
|
||||
#for udid
|
||||
allow { init deviceinfoservice sh samgr hdf_devmgr softbus_server } devinfo_private_param:file { map open read };
|
||||
|
Loading…
x
Reference in New Issue
Block a user