Home | History | Annotate | Download | only in sepolicy
      1 type per_mgr, domain, domain_deprecated;
      2 type per_mgr_exec, exec_type, file_type;
      3 init_daemon_domain(per_mgr);
      4 
      5 allow per_mgr shared_log_device:chr_file rw_file_perms;
      6 
      7 allow per_mgr sysfs_msm_subsys:dir r_dir_perms;
      8 allow per_mgr sysfs_msm_subsys:lnk_file r_file_perms;
      9 
     10 binder_service(per_mgr)
     11 binder_use(per_mgr)
     12 binder_call(per_mgr, per_proxy)
     13 binder_call(per_mgr, rild)
     14 allow per_mgr per_mgr_service:service_manager add;
     15 
     16 allow per_mgr subsys_modem_device:chr_file r_file_perms;
     17 
     18 allow per_mgr self:capability net_raw;
     19 allow per_mgr self:socket create_socket_perms;
     20