Skip to content
Snippets Groups Projects
  • Tri Vo's avatar
    More granular vendor access to /system files. · 5c1fe61e
    Tri Vo authored
    This change limits global access to /system files down to:
    /system/bin/linker*
    /system/lib[64]/*
    /system/etc/ld.config*
    /system/etc/seccomp_policy/*
    /system/etc/security/cacerts/*
    /system/usr/share/zoneinfo/*
    
    Bug: 111243627
    Test: boot device, browse internet without denials to system_* types.
    Test: VtsHalDrmV1_{1, 0}TargetTest without denials
    Change-Id: I69894b29733979c2bc944ac80229e84de5d519f4
    5c1fe61e
28.0.cil 91.80 KiB