Home | History | Annotate | Download | only in sepolicy
      1 # init switches to init domain (via init.rc).
      2 type init, domain;
      3 permissive init;
      4 # init is unconfined.
      5 unconfined_domain(init)
      6 tmpfs_domain(init)
      7 # add a rule to handle unlabelled mounts
      8 allow init unlabeled:filesystem mount;
      9