From 753ba4df02e229ffd0c0b43acac20ec2f61f679d Mon Sep 17 00:00:00 2001 From: UtsavBalar1231 Date: Mon, 28 Mar 2022 13:17:46 -0300 Subject: veux: sepolicy: Grant perms to mount tracefs when CONFIG_DEBUG_FS avc: denied { mounton } for pid=1 comm="init" path="/sys/kernel/tracing" dev="tracefs" ino=1 scontext=u:r:init:s0 tcontext=u:object_r:debugfs_tracing_debug:s0 tclass=dir permissive=0 Change-Id: Ia71539ff4b622d5130f2051e8ae490f3b7a4722b --- sepolicy/vendor/init.te | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) diff --git a/sepolicy/vendor/init.te b/sepolicy/vendor/init.te index ae76f11..22c338a 100644 --- a/sepolicy/vendor/init.te +++ b/sepolicy/vendor/init.te @@ -1,4 +1,6 @@ allow init adsprpcd_file:file mounton; # Allow init to set read_ahead_kb and discard_max_bytes on /data partition -allow init vendor_sysfs_scsi_host:file w_file_perms; \ No newline at end of file +allow init vendor_sysfs_scsi_host:file w_file_perms; + +allow init debugfs_tracing_debug:dir mounton; \ No newline at end of file -- cgit v1.2.3