diff --git a/private/e2fs.te b/private/e2fs.te deleted file mode 100644 index add1cc2a4c7f625b53947596f05fd1fb33b65654..0000000000000000000000000000000000000000 --- a/private/e2fs.te +++ /dev/null @@ -1,14 +0,0 @@ -type e2fs, domain, coredomain; - -allow e2fs block_device:blk_file getattr; -allow e2fs block_device:dir search; -allow e2fs userdata_block_device:blk_file rw_file_perms; - -# access /proc/filesystems -allow e2fs proc:file r_file_perms; - -# access /sys/fs/ext4/features -allow e2fs sysfs_fs_ext4_features:file r_file_perms; - -# access sselinux context files -allow e2fs file_contexts_file:file { getattr open read }; diff --git a/public/e2fs.te b/public/e2fs.te index ecb25a2cfd0333583b006ee6df173f5eef2da792..30a815a0107fa122ab9c4684fe5cddbe265ed202 100644 --- a/public/e2fs.te +++ b/public/e2fs.te @@ -1 +1,15 @@ +type e2fs, domain, coredomain; type e2fs_exec, exec_type, file_type; + +allow e2fs block_device:blk_file getattr; +allow e2fs block_device:dir search; +allow e2fs userdata_block_device:blk_file rw_file_perms; + +# access /proc/filesystems +allow e2fs proc:file r_file_perms; + +# access /sys/fs/ext4/features +allow e2fs sysfs_fs_ext4_features:file r_file_perms; + +# access sselinux context files +allow e2fs file_contexts_file:file { getattr open read };