diff --git a/private/compat/26.0/26.0.ignore.cil b/private/compat/26.0/26.0.ignore.cil index 2cb4d09ef6b97302c243baa85d67fe64771c3543..23b829977e0b830210c5d77d76b1e2b39d843d01 100644 --- a/private/compat/26.0/26.0.ignore.cil +++ b/private/compat/26.0/26.0.ignore.cil @@ -22,6 +22,7 @@ mediaprovider_tmpfs netd_stable_secret_prop package_native_service + statscompanion_service storaged_data_file sysfs_fs_ext4_features system_boot_reason_prop diff --git a/private/service_contexts b/private/service_contexts index 86a6032a629b622f5078232e6f9ecdbfb46d12d9..ac7fb8ef7eebee4d369d5a452816d4eaa46690cb 100644 --- a/private/service_contexts +++ b/private/service_contexts @@ -140,6 +140,7 @@ simphonebook_msim u:object_r:radio_service:s0 simphonebook2 u:object_r:radio_service:s0 simphonebook u:object_r:radio_service:s0 sip u:object_r:radio_service:s0 +statscompanion u:object_r:statscompanion_service:s0 soundtrigger u:object_r:voiceinteraction_service:s0 statusbar u:object_r:statusbar_service:s0 storaged u:object_r:storaged_service:s0 diff --git a/private/system_server.te b/private/system_server.te index 9879913aa08e4093661b8e808da1d243929d7c47..b38509c67a9bb4c82e24d9f589adb1a8267ae5b9 100644 --- a/private/system_server.te +++ b/private/system_server.te @@ -786,3 +786,6 @@ neverallow system_server { domain -system_server }:process ptrace; # file read access. However, that is now unnecessary (b/34951864) # This neverallow can be removed after b/34951864 is fixed. neverallow system_server system_server:capability sys_resource; + +# TODO(b/67468181): Remove following lines upon resolution of this bug +dontaudit system_server statscompanion_service:service_manager { add find }; diff --git a/public/service.te b/public/service.te index fe26020d9d3b55386c616c61f64fbcef074feda2..3b9d60b6763fc2d369a97eeb4883387085e28309 100644 --- a/public/service.te +++ b/public/service.te @@ -21,6 +21,7 @@ type mediadrmserver_service, service_manager_type; type netd_service, service_manager_type; type nfc_service, service_manager_type; type radio_service, service_manager_type; +type statscompanion_service, service_manager_type; type storaged_service, service_manager_type; type surfaceflinger_service, service_manager_type; type system_app_service, service_manager_type;