1 type per_mgr, domain, domain_deprecated; 2 type per_mgr_exec, exec_type, file_type; 3 init_daemon_domain(per_mgr); 4 5 allow per_mgr shared_log_device:chr_file rw_file_perms; 6 7 allow per_mgr sysfs_msm_subsys:dir r_dir_perms; 8 allow per_mgr sysfs_msm_subsys:lnk_file r_file_perms; 9 10 binder_service(per_mgr) 11 binder_use(per_mgr) 12 binder_call(per_mgr, per_proxy) 13 binder_call(per_mgr, rild) 14 allow per_mgr per_mgr_service:service_manager add; 15 16 allow per_mgr subsys_modem_device:chr_file r_file_perms; 17 18 allow per_mgr self:capability net_raw; 19 allow per_mgr self:socket create_socket_perms; 20