• Home
  • Line#
  • Scopes#
  • Navigate#
  • Raw
  • Download
1# Copyright (c) 2022 Huawei Device Co., Ltd.
2# Licensed under the Apache License, Version 2.0 (the "License");
3# you may not use this file except in compliance with the License.
4# You may obtain a copy of the License at
5#
6#     http://www.apache.org/licenses/LICENSE-2.0
7#
8# Unless required by applicable law or agreed to in writing, software
9# distributed under the License is distributed on an "AS IS" BASIS,
10# WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
11# See the License for the specific language governing permissions and
12# limitations under the License.
13
14#avc:  denied  { setattr } for  pid=1 comm="init" name="bbox" dev="tmpfs" ino=198 scontext=u:r:init:s0 tcontext=u:object_r:dev_bbox:s0 tclass=chr_file permissive=0
15allow init dev_bbox:chr_file { setattr ioctl };
16
17#avc:  denied  { write } for  pid=4175 comm="init" name="hiview" dev="mmcblk0p11" ino=18 scontext=u:r:init:s0 tcontext=u:object_r:hiview_file:s0 tclass=dir permissive=0
18#avc:  denied  { add_name } for  pid=1594 comm="init" name="temp" scontext=u:r:init:s0 tcontext=u:object_r:hiview_file:s0 tclass=dir permissive=0
19#avc:  denied  { create } for  pid=1594 comm="init" name="temp" scontext=u:r:init:s0 tcontext=u:object_r:hiview_file:s0 tclass=dir permissive=0
20allow init hiview_file:dir { write add_name create getattr relabelfrom };
21allow init hiview_sys_def_file:dir { write add_name create setattr relabelto read open search };
22
23#avc:  denied  { setattr } for pid=899 comm="init" name="userlist" dev="sysfs" scontext=u:r:init:s0 tcontext=u:object_r:sysfs_hungtask_userlist:s0 tclass=file permissive=0
24allow init sysfs_hungtask_userlist:file { setattr };
25
26allow init dev_ucollection:chr_file { setattr };
27
28allow init data_system:dir { relabelfrom };
29
30allowxperm init dev_bbox:chr_file ioctl { 0x426a 0x4202 0x4203};
31
32#avc:  denied { use } for pid=10540, comm="/bin/init"  ioctlcmd=0x4  scontext=u:r:init:s0 tcontext=u:r:hiview:s0 tclass=fd permissive=1
33allow init hiview:fd { use };
34
35