1 # remote storage process 2 type rmt, domain, domain_deprecated; 3 type rmt_exec, exec_type, file_type; 4 5 init_daemon_domain(rmt) 6 7 allow rmt shared_log_device:chr_file rw_file_perms; 8 9 wakelock_use(rmt) 10 allow rmt self:capability { setuid setgid setpcap net_raw sys_admin }; 11 12 # Allow access to /dev/uio0. 13 allow rmt uio_device:chr_file rw_file_perms; 14 15 allow rmt self:socket create_socket_perms; 16 17 allow rmt root_block_device:blk_file r_file_perms; 18 allow rmt modem_block_device:blk_file rw_file_perms; 19 allow rmt block_device:dir search; 20