Lines Matching refs:file
11 allow system_server dalvikcache_data_file:file execute;
17 allow system_server user_profile_data_file:file getattr;
19 allow system_server user_profile_foreign_dex_data_file:file { getattr rename unlink };
22 allow system_server resourcecache_data_file:file r_file_perms;
31 allow system_server zygote_tmpfs:file read;
37 allow system_server zygote_exec:file r_file_perms;
98 allow system_server qtaguid_proc:file rw_file_perms;
102 allow system_server proc_uid_cputime_showstat:file r_file_perms;
105 allow system_server proc_uid_cputime_removeuid:file { w_file_perms getattr };
108 allow system_server proc_sysrq:file rw_file_perms;
111 allow system_server debugfs:file r_file_perms;
184 allow system_server sysfs:file rw_file_perms;
185 allow system_server sysfs_nfc_power_writable:file rw_file_perms;
186 allow system_server sysfs_devices_system_cpu:file w_file_perms;
187 allow system_server sysfs_mac_address:file r_file_perms;
189 allow system_server sysfs_thermal:file r_file_perms;
192 allow system_server sysfs_usb:file w_file_perms;
221 allow system_server keychain_data_file:file create_file_perms;
225 allow system_server apk_data_file:file { create_file_perms link };
227 allow system_server apk_tmp_file:file create_file_perms;
231 allow system_server apk_private_data_file:file create_file_perms;
233 allow system_server apk_private_tmp_file:file create_file_perms;
237 allow system_server asec_apk_file:file create_file_perms;
238 allow system_server asec_public_file:file create_file_perms;
242 allow system_server anr_data_file:file create_file_perms;
246 allow system_server backup_data_file:file create_file_perms;
250 allow system_server heapdump_data_file:file create_file_perms;
254 allow system_server adb_keys_file:file create_file_perms;
259 allow system_server radio_data_file:file create_file_perms;
263 allow system_server systemkeys_data_file:file create_file_perms;
267 allow system_server tombstone_data_file:file r_file_perms;
271 allow system_server vpn_data_file:file create_file_perms;
275 allow system_server wifi_data_file:file create_file_perms;
279 allow system_server zoneinfo_data_file:file create_file_perms;
287 # Read pkg.apk file before it has been relabeled by vold.
288 allow system_server unlabeled:file r_file_perms;
292 allow system_server system_app_data_file:file create_file_perms;
296 …h_data_file nfc_data_file radio_data_file shell_data_file app_data_file }:file { getattr read writ…
299 allow system_server media_rw_data_file:file { getattr read write };
305 allow system_server { apk_tmp_file apk_private_tmp_file }:{ dir file } { relabelfrom relabelto };
306 allow system_server { apk_data_file apk_private_data_file }:{ dir file } { relabelfrom relabelto };
309 allow system_server system_data_file:file relabelfrom;
310 allow system_server wallpaper_file:file relabelto;
311 allow system_server wallpaper_file:file { rw_file_perms rename unlink };
314 allow system_server { system_data_file wallpaper_file }:file link;
319 allow system_server shortcut_manager_icons:file create_file_perms;
323 allow system_server ringtone_file:file create_file_perms;
325 # Relabel icon file.
326 allow system_server icon_file:file relabelto;
327 allow system_server icon_file:file { rw_file_perms unlink };
366 allow system_server { cache_file cache_recovery_file }:file { relabelfrom create_file_perms };
370 allow system_server system_file:file x_file_perms;
375 allow system_server gps_control:file rw_file_perms;
386 allow system_server cache_backup_file:file create_file_perms;
389 allow system_server cache_private_backup_file:file create_file_perms;
404 allow system_server fscklogs:file unlink;
416 allow system_server sysfs_lowmemorykiller:file { getattr w_file_perms };
420 # only one file in /sys/fs/pstore
422 allow system_server pstorefs:file r_file_perms;
426 allow system_server sysfs_zram:file r_file_perms;
491 allow system_server fingerprintd_data_file:file { getattr unlink };
494 allow system_server sysfs_mac_address:file r_file_perms;
499 allow system_server method_trace_data_file:file { create w_file_perms };
511 allow system_server configfs:file { getattr open unlink write };
525 allow system_server toolbox_exec:file rx_file_perms;
537 allow system_server preloads_data_file:file { r_file_perms unlink };
548 neverallow system_server sdcard_type:file rw_file_perms;
552 # file descriptor.
555 neverallow system_server { bluetooth_data_file nfc_data_file shell_data_file app_data_file }:file o…
559 # system server to dynamically load a dex file, something we do not
561 neverallow system_server dex2oat_exec:file no_x_file_perms;
567 }:file no_x_file_perms;
577 neverallow system_server system_server_tmpfs:file execute;