From a99906babb724e71029e014d38ed4b394637d3ce Mon Sep 17 00:00:00 2001 From: Albert I Date: Sun, 20 Mar 2022 19:21:54 -0300 Subject: veux: sepolicy: Allow apps and camera HAL access to secure ADSP domain --- sepolicy/vendor/app.te | 1 + sepolicy/vendor/hal_camera_default.te | 1 + 2 files changed, 2 insertions(+) diff --git a/sepolicy/vendor/app.te b/sepolicy/vendor/app.te index b70be61..03728c4 100644 --- a/sepolicy/vendor/app.te +++ b/sepolicy/vendor/app.te @@ -1,4 +1,5 @@ allow { appdomain -isolated_app } adsprpcd_file:dir r_dir_perms; allow { appdomain -isolated_app } public_adsprpcd_file:file r_file_perms; +allow { appdomain -isolated_app } vendor_xdsp_device:chr_file r_file_perms; get_prop({ appdomain -isolated_app }, vendor_mlipay_prop) diff --git a/sepolicy/vendor/hal_camera_default.te b/sepolicy/vendor/hal_camera_default.te index cbca59c..95c6257 100644 --- a/sepolicy/vendor/hal_camera_default.te +++ b/sepolicy/vendor/hal_camera_default.te @@ -2,3 +2,4 @@ r_dir_file(hal_camera_default, camera_persist_file) set_prop(hal_camera_default, vendor_camera_sensor_prop) allow hal_camera_default public_adsprpcd_file:file r_file_perms; +allow hal_camera_default vendor_xdsp_device:chr_file r_file_perms; -- cgit v1.2.3