summaryrefslogtreecommitdiff
path: root/common/sepolicy/system_app.te (plain)
blob: c24b45c4b01acc9053432e21a5c6cbb4f0e0ce07
1allow system_app sysfs_lowmemorykiller:file { getattr w_file_perms };
2allow system_app subtitle_service:service_manager add;
3
4#added for atv remote
5allow system_app uhid_device:dir r_dir_perms;
6
7allow system_app dhcp_data_file:file { r_file_perms };
8allow system_app ppp_data_file:dir { create_dir_perms };
9allow system_app ppp_data_file:file { create_file_perms };
10allow system_app ppp_data_file:sock_file { create_file_perms };
11allow system_app pppoe_wrapper_socket:sock_file { write setattr };
12allow system_app pppoe_wrapper_socket:file { getattr write open };
13allow system_app pppoe_wrapper:unix_dgram_socket sendto;
14allow system_app dhcp_data_file:dir { r_dir_perms };
15allow system_app dhcp_data_file:fifo_file { r_file_perms };
16
17allow system_app vold:unix_stream_socket connectto;
18allow system_app pppoe_service:service_manager add;
19allow system_app dig_socket:sock_file write;
20
21allow system_app iso9660:dir { search read open };
22allow system_app unlabeled:dir { open search read write getattr };
23allow system_app unlabeled:file { lock open read write getattr };
24
25# /cache_file for dvb app creat update.zip file at /cache dir
26allow system_app cache_file:dir {create_dir_perms create_file_perms rw_file_perms};
27allow system_app cache_file:file {create_file_perms rw_file_perms getattr};
28
29allow system_app log_file:dir { search read open getattr };
30allow system_app log_file:file { read open getattr };
31allow system_app tombstone_data_file:dir r_dir_perms;
32allow system_app tombstone_data_file:file r_file_perms;
33
34allow system_app shell_data_file:dir search;
35allow system_app graphics_device:dir search;
36allow system_app sysfs_xbmc:file {open read write};
37allow system_app media_prop:property_service set;
38allow system_app system_app:process setfscreate;
39allow system_app socket_device:sock_file setattr;
40allow system_app pppoe_wrapper_socket:sock_file create;
41allow system_app pppoe_wrapper_socket:sock_file unlink;
42allow system_app pppoe_wrapper_socket:file create;
43allow system_app cache_recovery_file:dir { search read open write add_name remove_name};
44allow system_app cache_recovery_file:file { create rw_file_perms unlink};
45allow system_app update_data_file:dir {getattr search read write open add_name remove_name};
46allow system_app update_data_file:file {getattr write read create open unlink};
47allow system_app update_engine:binder {call transfer};
48
49allow system_app tv_prop:file {open read getattr};
50allow system_app tv_prop:property_service {set};
51
52allow system_app proc_stat:file { read open getattr };
53allow system_app proc_interrupts:file { read open getattr };
54
55allow system_app exfat:dir create_dir_perms;
56allow system_app exfat:file create_file_perms;
57
58allow system_app ntfs:dir create_dir_perms;
59allow system_app ntfs:file create_file_perms;
60
61allow system_app mnt_media_rw_file:dir r_dir_perms;
62