Home | History | Annotate | Download | only in sepolicy
      1 # remote storage process
      2 type rmt, domain, device_domain_deprecated;
      3 type rmt_exec, exec_type, file_type;
      4 
      5 init_daemon_domain(rmt)
      6 
      7 allow rmt shared_log_device:chr_file rw_file_perms;
      8 
      9 wakelock_use(rmt)
     10 allow rmt self:capability { setuid setgid setpcap net_raw sys_admin };
     11 
     12 # Allow access to /dev/uio0.
     13 allow rmt uio_device:chr_file rw_file_perms;
     14 
     15 allow rmt self:socket create_socket_perms;
     16 allowxperm rmt self:socket ioctl msm_sock_ipc_ioctls;
     17 
     18 allow rmt root_block_device:blk_file r_file_perms;
     19 allow rmt modem_block_device:blk_file rw_file_perms;
     20 allow rmt block_device:dir search;
     21