msm8974-common: sepolicy: Label sysfs_net, resolve denials

* avc: denied { getattr } for path="/sys/devices/msm_sdcc.2/mmc_host/
  mmc0/mmc0:0001/mmc0:0001:2/net/wlan0/phy80211" dev="sysfs"
  ino=29873 scontext=u:r:hal_wifi_hostapd_default:s0
  tcontext=u:object_r:sysfs_net:s0 tclass=lnk_file permissive=0
* avc: denied { read } for name="phy80211" dev="sysfs" ino=29823
  scontext=u:r:hal_wifi_hostapd_default:s0
  tcontext=u:object_r:sysfs_net:s0 tclass=lnk_file permissive=0

Change-Id: I6f40b8bdac2537b7000c02af6fac8277acb2a718
This commit is contained in:
Kevin F. Haggerty 2018-10-20 17:25:18 -06:00
parent a7c4bcc98e
commit 97ff0e6d32
No known key found for this signature in database
GPG Key ID: 6D95512933112729
2 changed files with 5 additions and 0 deletions

View File

@ -61,6 +61,10 @@
# sysfs - mdnie # sysfs - mdnie
/sys/devices/virtual/mdnie/mdnie(/.*)? u:object_r:sysfs_mdnie:s0 /sys/devices/virtual/mdnie/mdnie(/.*)? u:object_r:sysfs_mdnie:s0
# sysfs - net
/sys/devices/msm_sdcc\.[0-9]/mmc_host/.*/net(/.*)? u:object_r:sysfs_net:s0
/sys/devices/virtual/net(/.*)? u:object_r:sysfs_net:s0
# sysfs - sec # sysfs - sec
/sys/devices/platform/sec-thermistor(/.*)? u:object_r:sysfs_sec_thermistor:s0 /sys/devices/platform/sec-thermistor(/.*)? u:object_r:sysfs_sec_thermistor:s0
/sys/devices/virtual/sec/bamdmux(/.*)? u:object_r:sysfs_sec_bamdmux:s0 /sys/devices/virtual/sec/bamdmux(/.*)? u:object_r:sysfs_sec_bamdmux:s0

View File

@ -0,0 +1 @@
allow hal_wifi_hostapd_default sysfs_net:lnk_file { getattr read };