287 files changed, 177798 insertions, 0 deletions
diff --git a/sepolicy/platform_app.te b/sepolicy/platform_app.te new file mode 100644 index 0000000..487bb5c --- a/dev/null +++ b/sepolicy/platform_app.te @@ -0,0 +1,42 @@ +#allow platform_app sysfs_xbmc:file {rw_file_perms}; +#allow platform_app usb_device:dir {open read}; +#allow platform_app system_control_service:service_manager find; +#allow platform_app subtitle_service:service_manager find; +#allow platform_app system_control_service:dir { read open search }; +#allow platform_app imageserver_service:service_manager find; +# +#allow platform_app mediadrmserver_service:service_manager find; +#allow platform_app loop_device:dir { open read }; +# +#allow platform_app iso9660:dir { search open read getattr }; +#allow platform_app iso9660:file { open read getattr }; +# +#allow platform_app udf:dir { search open read getattr }; +#allow platform_app udf:file { open read getattr }; +# +allow platform_app fuseblk:dir create_dir_perms; +allow platform_app fuseblk:file create_file_perms; +# +#allow platform_app tvserver_service:service_manager find; +#allow system_app unlabeled:dir { search read write getattr }; +#allow system_app unlabeled:file { lock open read write getattr }; +#allow priv_app media_prop:file { read }; + +get_prop(platform_app, media_prop) +get_prop(system_app, media_prop) + +allow platform_app vendor_file:file { getattr read open execute }; + + +allow platform_app exfat:dir create_dir_perms; +allow platform_app exfat:file create_file_perms; + +allow platform_app ntfs:dir create_dir_perms; +allow platform_app ntfs:file create_file_perms; + +allow platform_app systemcontrol_hwservice:hwservice_manager { find }; +allow platform_app system_control:binder { call }; +allow platform_app droidmount_service:service_manager { find }; +allow platform_app subtitle_service:service_manager { find }; +allow platform_app iso9660:dir { search open read getattr }; +allow platform_app iso9660:file { open read getattr };
\ No newline at end of file |