summaryrefslogtreecommitdiff
authorjunchao yuan <junchao.yuan@amlogic.com>2020-11-19 07:14:14 (GMT)
committer gerrit autosubmit <gerrit.autosubmit@aml-code-master.amlogic.com>2020-11-20 08:02:48 (GMT)
commit7076244b74865e417383710974826a345a85380d (patch)
tree7f7554e4fdc03fb44f68f56165d203c44222bb05
parent320ed1a298654ff6bbb1192ff0f458c64b26139e (diff)
downloadcommon-7076244b74865e417383710974826a345a85380d.zip
common-7076244b74865e417383710974826a345a85380d.tar.gz
common-7076244b74865e417383710974826a345a85380d.tar.bz2
device/common: add vfat selinux policy [1/5]
PD#SWPL-36497 Prolem: can't recording file into HDD; Solution: add vfat selinux policy; Verify: newton Change-Id: Iee09e3a638194ff0a0e78ce08cdc62a5ecbd158d Signed-off-by: junchao yuan <junchao.yuan@amlogic.com>
Diffstat
-rw-r--r--sepolicy/dtvkitserver.te6
1 files changed, 4 insertions, 2 deletions
diff --git a/sepolicy/dtvkitserver.te b/sepolicy/dtvkitserver.te
index 6130714..3a29ee3 100644
--- a/sepolicy/dtvkitserver.te
+++ b/sepolicy/dtvkitserver.te
@@ -13,7 +13,7 @@ allow dtvkitserver self:capability sys_nice;
allow dtvkitserver hwservicemanager:binder { call transfer };
allow dtvkitserver system_control:binder { call transfer };
allow dtvkitserver sysfs_video:dir { search };
-allow dtvkitserver dtvkit_data_file:dir{ write read add_name remove_name open search };
+allow dtvkitserver dtvkit_data_file:dir{ create write read add_name remove_name open search };
allow dtvkitserver dtvkit_data_file:file { ioctl getattr read write open create lock setattr unlink append };
allow dtvkitserver dtvkit_data_file:chr_file{ ioctl };
allow dtvkitserver vndbinder_device:chr_file { read write open ioctl };
@@ -50,4 +50,6 @@ allow dtvkitserver vendor_video_device:chr_file { read write open ioctl getattr
allow dtvkitserver vendor_framework_file:file { execute };
allow dtvkitserver self:capability { net_raw };
allow dtvkitserver param_tv_file:dir { read open };
-allow dtvkitserver vfat:dir { read open getattr };
+allow dtvkitserver vfat:dir { add_name write create ioctl remove_name open read rmdir getattr search };
+allow dtvkitserver vfat:file { write create open unlink link read getattr };
+allow dtvkitserver mnt_media_rw_file:dir r_dir_perms;