From df9649503a085b1316e392a4807ef91e9f4ef9a4 Mon Sep 17 00:00:00 2001
From: Ruchi Kandoi <kandoiruchi@google.com>
Date: Mon, 31 Jul 2017 09:55:30 -0700
Subject: [PATCH] Allow nfc application to set nfc property

type=1400 audit(1501520483.066:14): avc: denied { write } for pid=3330
comm=4173796E635461736B202331 name="property_service" dev="tmpfs"
ino=10749 scontext=u:r:nfc:s0 tcontext=u:object_r:property_socket:s0
tclass=sock_file permissive=0

Test: No sepolicy denials
Bug: 64010793
Change-Id: I8d73e8e19cd4d0a8c61f1f184820c53e5cc2b6d6
---
 private/nfc.te | 2 ++
 1 file changed, 2 insertions(+)

diff --git a/private/nfc.te b/private/nfc.te
index 1a4f789ee..b41558c86 100644
--- a/private/nfc.te
+++ b/private/nfc.te
@@ -26,6 +26,8 @@ allow nfc app_api_service:service_manager find;
 allow nfc system_api_service:service_manager find;
 allow nfc vr_manager_service:service_manager find;
 
+set_prop(nfc, nfc_prop);
+
 # already open bugreport file descriptors may be shared with
 # the nfc process, from a file in
 # /data/data/com.android.shell/files/bugreports/bugreport-*.
-- 
GitLab