From e5363bb71f35c3eef373e2ce7f764d2b6389e2fc Mon Sep 17 00:00:00 2001 From: EcrosoftXiao Date: Sat, 15 Jul 2023 22:58:17 +0800 Subject: [PATCH] sm8350-common: sepolicy: Address more denials for fp hal Change-Id: I9a0ad1bc605ea6fd40b8f0a1301129bad1c61fbd --- sepolicy/vendor/hal_fingerprint_default.te | 4 +++- 1 file changed, 3 insertions(+), 1 deletion(-) diff --git a/sepolicy/vendor/hal_fingerprint_default.te b/sepolicy/vendor/hal_fingerprint_default.te index 4f905c7..24bb566 100644 --- a/sepolicy/vendor/hal_fingerprint_default.te +++ b/sepolicy/vendor/hal_fingerprint_default.te @@ -6,7 +6,7 @@ vendor_restricted_prop(vendor_fp_prop) vendor_internal_prop(vendor_fp_info_prop) # Binder -allow hal_fingerprint_default vendor_hal_fingerprint_hwservice_xiaomi:hwservice_manager find; +add_hwservice(hal_fingerprint_default, vendor_hal_fingerprint_hwservice_xiaomi) allow hal_fingerprint_default vendor_hal_perf_default:binder call; allow hal_fingerprint_default vendor_hal_perf_hwservice:hwservice_manager find; @@ -32,6 +32,8 @@ allow hal_fingerprint_default vendor_sysfs_graphics:file rw_file_perms; allow hal_fingerprint_default tee_device:chr_file rw_file_perms; allow hal_fingerprint_default uhid_device:chr_file rw_file_perms; allow hal_fingerprint_default vendor_fingerprint_device:chr_file rw_file_perms; +allow hal_fingerprint_default input_device:dir r_dir_perms; +allow hal_fingerprint_default input_device:chr_file rw_file_perms; # Data allow hal_fingerprint_default vendor_fingerprint_data_file:dir rw_dir_perms;