Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Up to date as of Sept 9, 2016 #2

Open
wants to merge 42 commits into
base: mm6.0
Choose a base branch
from
Open

Up to date as of Sept 9, 2016 #2

wants to merge 42 commits into from

Conversation

ghost
Copy link

@ghost ghost commented Sep 9, 2016

Bring up to date with Slim

Vince Leung and others added 30 commits September 9, 2016 16:25
Perfd socket path has been changed
from /data/misc/perfd/mpctl to
/dev/socket/perfd.

Remove socket dir create policies
from perfd.te and replace with
rw socket file permissions.

Change-Id: I98364d42e32a2d4358fddbdc4801fd27bc04e11a
MDTP daemon (mdtpd) was created. All MDTP threads were removed
from QSEECOM.
This change moves all MDTP specific rules from the qseecomd
domain to the mdtp domain.

Change-Id: I12f624c89f6fe43b09a7c748c2b0b26dc8c0a0ee
Add improveTouch gesture manager permission

Change-Id: I641821406135ebb95524aefc7afaf9de66f4f29b
Add hand biometrics manager permission

Change-Id: I3d0b1c456b6a7d2d24abfb407d3a70c16cd82396
Adding new properties to enable the ubwc support based
on hardware capability.

Change-Id: Ie0e406360f5a9ceb0a6daaa4d1f7755ce8168fb4
Add policies to permit zram & swap disks creation

Change-Id: Ibf79c60901cb2b8ccf62ad98f3a331481119892c
Fix the following denial

init: avc:  denied  { set } for property=persist.net.doxlat
scontext=u:r:netmgrd:s0 tcontext=u:object_r:default_prop:s0
tclass=property_service

CRs-Fixed: 978703
Change-Id: Ifa91d92ee82a29fa3a4a47a6e94dd9152b47e0e5
Add policy to allow FIDO access to Secure UI and Secure Touch
with sysfs files and unix_dgram_socket sendto permissions.
Add policy to all FIDO daemons to allow service_manager find.

Change-Id: Iea84c17b8959ace58749b5721abdba64e665baf3
gamed need permissions to communicate with other daemons/process
through sockets

CRs-Fixed:987464

Change-Id: Iba51e0a06f01340a9b82fc6214b1bcfb9b81d29d
QFP daemon needs to read calibration data from /persist/data/qc_senseid

CRs-Fixed: 952095

Change-Id: I09233b1eedb5f438accc6ca3a22d0db2390ead54
Adding SEL policies for netd and hostapd.
These policies will allow the netd to bind to
the hostapd as monitor and listen to messages from the
hostapd.Also, these will allow the supplicant to access
the wpa_socket directory if it's created by netd.

Change-Id: I321195379146b0b4cd0e5f8946549ceadb224015
CRs-Fixed: 756001
Add permissions to allow perfd kill
permissions to send signull to processes

Change-Id: Id4ea3b93a2de4eb46c45cbb3c4c93f5fdfeca1ef
Add the bootup music permissoin

Change-Id: Ia4200c06f88d7abaf1b19a4aa9fbe51930a101da
CRs-Fixed: 943280
Add the bootup music permissoin

CRs-Fixed: 965131

Change-Id: I7e17142ec9362824eff9d2687c1ca9bc5a65febd
Add permission for graphics fd. we need this to
Query display size from display driver and use that info
as one of the parameters for filtering preview parameters.

Change-Id: I249e33489a174a1a2cb1bac190de81531a39e7db
healthd need to have access to rtc dev file to get rtc and alarm
time.

Change-Id: Id7224465e5e2152b6819285e0eb2e7a66d84f68c
Change-Id: I012a115854c22841e761318dd903ce09621aaaa1
Add mpctl related policies into mpdecision.
Add system_server policy to allow it to use mpctl.
Add system_app policy to allow it to use mpctl.
Add mediaserver policy to allow it to use mpctl.

Change-Id: I2e73cee528a87cefe58bd58aad16cda84f6cabf4
Change-Id: Ib48d599155a354d2a6c366816b878e041a2cbdba
Change-Id: I165b059cac1b2db39d0bd600349ca66c6e4f201a
Adding context to boot, recovery, cache and frp block device

Change-Id: Ib19d0a5fbff6f65cc45b42d8ebcb29df91e1beb7
CRs-fixed: 904364
Change-Id: I40eeb6895f1c5550813bf8b4182e33f9a4dc5dfd
This applies to user builds, too

Change-Id: Iddc7421ba83b3fd7b5f9a66b2dd1c3ffe240e1fa
Creating sched group requires to write
on /proc/<pid>/sched_group_id. Give
permissions for the same.

Change-Id: Id5686c917041d638fda99b3553261fee98556c51
These were added in I5dc5d125dec1fb03646da04ffb01c1153b9f3cab, then
added again by upstream Ib19d0a5fbff6f65cc45b42d8ebcb29df91e1beb7.

Change-Id: I1864a3b2d7357d30c5f5db9f54ca4c0575fa75f9
* Relax socket constraints for platform apps

Change-Id: Ib8a44887b3cceb3481f8a66600b43c761fbaa70c
iop socket path has been changed from /data/misc/iop/iop to
/dev/socket/iop.

Remove socket dir create policies from iop.te and replace with
rw socket file permissions.

Change-Id: I8fcef873b26234d517c319debcd09bf817fd75e2
FST Manager needs write permissions to wifi directory for supporting
whitelist of rate upgrate interface (wlan1)

Change-Id: I564e7da6118e17f7487242c55b0373dab8d12578
Allow the SmartcardService to communicate with the new
QSEE Proxy daemon through the QPay Library.

Change-Id: Ic66899c2e016c40e17c0f3f3c454b44b73a26bf8
Add selinux policy for the test cases in fastmmi, for
example, camera, bluetooth, wifi, sensor, storage,
logcat and etc.

Change-Id: Id51893ad9e101d9306b5608410389321544db9be
Trilokesh Rangam and others added 12 commits September 9, 2016 16:25
Allowing BootKPI markers access to system apps and vold
to log corresponding KPI entries.

Change-Id: Ice2f60f12f0eec9a0b4c43f98f88540ce155145b
persist.nativehmi.exit is used by the bootanimation app
boot is the bin used for bootandimation

Change-Id: I508ba92ad98a8575edf4cafc02566781069bd2fb
add nativeHMI to support or read inputdevice.
add secontext for sys.mediaserver.ready
add  new domain for earlyaudio
add nativehmi.appname property.

Change-Id: I8e7028bfe24acfa84e946a341435a1e4457d3c25
Add audio_device permission for i2c-6 device.

Change-Id: I43af04bd32057969662b5726ff792fead2ff2a77
Adding radio_data_file and bluetooth_data_file for IOP.

Change-Id: I7fd0bca30d055886c3e99b27cccaf08c51079922
ODLT needs to use audio for testing, which would require
media server access. Adding the corresponding SE rule.

Change-Id: I4c15c237bf5514521496137004be648ef7dc94eb
CRs-Fixed: 913508
Add permission for SLPI node for targets where different
subsystems exist for ADSP and Sensors.

Change-Id: I161575826dfc929304a86a320f25ce2881cc2719
    Remove exec permission for radio to run
    com.qualcomm.qti.telephony/app_dex/*

Change-Id: Ibceb29133e22fbe6ac5bbfe7fc9b7d253acc2bf8
Add policy for VR service.

CRs-Fixed: 994847

Change-Id: I5bfe220cc71545e67cead4f485e7d451ac1e8ab2
Allow the QFP daemon to connect to a service exposed by the
Fingerprint Android service for access to Android functions

CRs-fixed: 1012634
Change-Id: I648a37e5c95564d522a9059f2fefa6a94bba162e
Change-Id: I8847d799386cfb5609b890a8fb4c6f43afe32ebe
 * Still in use for now.

Change-Id: Ieb4c420e73efcb729cc9554de6837ccb71ff603d
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

4 participants