Skip to content
Snippets Groups Projects
Commit 3b5923fe authored by Alex Klyubin's avatar Alex Klyubin
Browse files

SELinux policy granting vold the capability to reboot.

vold reboots needs to reboot the system when it succeeds or fails to
encrypt partitions.

Change-Id: Ibb1a5378228be60215162ae248e6c1049a16b830
parent 59e40a04
No related branches found
No related tags found
No related merge requests found
...@@ -26,6 +26,8 @@ allow vold domain:dir r_dir_perms; ...@@ -26,6 +26,8 @@ allow vold domain:dir r_dir_perms;
allow vold domain:{ file lnk_file } r_file_perms; allow vold domain:{ file lnk_file } r_file_perms;
allow vold domain:process { signal sigkill }; allow vold domain:process { signal sigkill };
allow vold self:capability { sys_ptrace }; allow vold self:capability { sys_ptrace };
# Grant vold the capability to reboot the system
allow vold self:capability { sys_boot };
# XXX Label sysfs files with a specific type? # XXX Label sysfs files with a specific type?
allow vold sysfs:file rw_file_perms; allow vold sysfs:file rw_file_perms;
......
0% Loading or .
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment