summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authortilaksidduram <tilaksidduram@gmail.com>2015-11-26 03:24:27 -0800
committertilaksidduram <tilaksidduram@gmail.com>2015-11-26 03:24:27 -0800
commit6bbc19ed681347d9f4c271c5d874a22be36ba052 (patch)
tree42aeb0e842cf2e0be9f9cab395c45eac2ae3abd1
parent41701ea291c5586ec426650ecd6ff09ae1cd5d3a (diff)
downloaddevice_samsung_n7100-6bbc19ed681347d9f4c271c5d874a22be36ba052.zip
device_samsung_n7100-6bbc19ed681347d9f4c271c5d874a22be36ba052.tar.gz
device_samsung_n7100-6bbc19ed681347d9f4c271c5d874a22be36ba052.tar.bz2
n7100: temporarily remove sepolicy
-rw-r--r--BoardConfig.mk3
-rw-r--r--sepolicy/bluetooth.te6
-rw-r--r--sepolicy/bootanim.te1
-rw-r--r--sepolicy/device.te22
-rw-r--r--sepolicy/file.te15
-rw-r--r--sepolicy/file_contexts60
-rw-r--r--sepolicy/gpsd.te10
-rw-r--r--sepolicy/hostapd.te1
-rw-r--r--sepolicy/mediaserver.te6
-rw-r--r--sepolicy/netd.te3
-rw-r--r--sepolicy/nfc.te2
-rw-r--r--sepolicy/platform_app.te1
-rw-r--r--sepolicy/radio.te2
-rw-r--r--sepolicy/rild.te3
-rw-r--r--sepolicy/service_contexts2
-rw-r--r--sepolicy/servicemanager.te5
-rw-r--r--sepolicy/shared_relro.te1
-rw-r--r--sepolicy/surfaceflinger.te1
-rw-r--r--sepolicy/system_app.te3
-rw-r--r--sepolicy/system_server.te10
-rw-r--r--sepolicy/ueventd.te3
-rw-r--r--sepolicy/untrusted_app.te7
-rw-r--r--sepolicy/vold.te3
-rw-r--r--sepolicy/wpa.te2
-rw-r--r--sepolicy/wpa_supplicant.te11
-rw-r--r--sepolicy/zygote.te1
26 files changed, 0 insertions, 184 deletions
diff --git a/BoardConfig.mk b/BoardConfig.mk
index c3f92ed..76b45ed 100644
--- a/BoardConfig.mk
+++ b/BoardConfig.mk
@@ -47,6 +47,3 @@ RECOVERY_FSTAB_VERSION := 2
# Compatibility with pre-kitkat Sensor HALs
SENSORS_NEED_SETRATE_ON_ENABLE := true
-
-#Selinux
-BOARD_SEPOLICY_DIRS += \device/samsung/n7100/sepolicy
diff --git a/sepolicy/bluetooth.te b/sepolicy/bluetooth.te
deleted file mode 100644
index d2dd05f..0000000
--- a/sepolicy/bluetooth.te
+++ /dev/null
@@ -1,6 +0,0 @@
-allow bluetooth firmware_exynos:dir { read open search };
-allow bluetooth firmware_exynos:file { read open };
-allow bluetooth bluetooth_efs_file:dir search;
-allow bluetooth bluetooth_efs_file:file read;
-allow bluetooth sysfs:file write;
-allow bluetooth efs_device_file:dir search;
diff --git a/sepolicy/bootanim.te b/sepolicy/bootanim.te
deleted file mode 100644
index 8a18e92..0000000
--- a/sepolicy/bootanim.te
+++ /dev/null
@@ -1 +0,0 @@
-allow bootanim ump_device:chr_file { open read write ioctl };
diff --git a/sepolicy/device.te b/sepolicy/device.te
deleted file mode 100644
index 4d1980c..0000000
--- a/sepolicy/device.te
+++ /dev/null
@@ -1,22 +0,0 @@
-# Secure memory
-type secmem_device, dev_type;
-
-# Unified Memory Management
-type ump_device, dev_type;
-
-# Efs block device
-type efs_block_device, dev_type;
-
-# Rfkill device
-type rfkill_device, dev_type;
-
-# MFC device
-type mfc_device, dev_type;
-type hpd_device, dev_type;
-
-# Fm radio device
-type fm_radio_device, dev_type;
-
-# Gadget serial device
-type gadget_serial_device, dev_type;
-
diff --git a/sepolicy/file.te b/sepolicy/file.te
deleted file mode 100644
index a5fb225..0000000
--- a/sepolicy/file.te
+++ /dev/null
@@ -1,15 +0,0 @@
-# MFC firmware
-type firmware_mfc, file_type;
-
-# Common Exynos firmware
-type firmware_exynos, file_type;
-
-# Sensors data
-type sensors_data_file, file_type, data_file_type;
-
-# Display sysfs
-type sysfs_display, fs_type, sysfs_type;
-
-type efs_device_file, file_type;
-
-
diff --git a/sepolicy/file_contexts b/sepolicy/file_contexts
deleted file mode 100644
index 5b0abcb..0000000
--- a/sepolicy/file_contexts
+++ /dev/null
@@ -1,60 +0,0 @@
-# Graphics
-/dev/mali u:object_r:gpu_device:s0
-/dev/ump u:object_r:ump_device:s0
-/dev/fimg2d u:object_r:video_device:s0
-/dev/s5p-smem u:object_r:secmem_device:s0
-
-# RIL
-/dev/umts_boot0 u:object_r:radio_device:s0
-/dev/umts_csd u:object_r:radio_device:s0
-/dev/umts_ipc0 u:object_r:radio_device:s0
-/dev/umts_loopback0 u:object_r:radio_device:s0
-/dev/umts_ramdump0 u:object_r:radio_device:s0
-/dev/umts_rfs0 u:object_r:radio_device:s0
-/dev/umts_router u:object_r:radio_device:s0
-
-# Efs
-/dev/block/mmcblk0p3 u:object_r:efs_block_device:s0
-/factory(/.*)? u:object_r:efs_file:s0
-
-# Camera
-/data/ISP_CV u:object_r:camera_data_file:s0
-/dev/exynos-mem u:object_r:video_device:s0
-/dev/s3c-mfc u:object_r:mfc_device:s0
-/dev/video[0-3]* u:object_r:camera_device:s0
-
-# Bluetooth
-/dev/ttySAC0 u:object_r:hci_attach_dev:s0
-/factory/bluetooth(/.*)? u:object_r:bluetooth_efs_file:s0
-/sys/class/rfkill/rfkill0/state u:object_r:sysfs_bluetooth_writable:s0
-/sys/class/rfkill/rfkill0/type u:object_r:sysfs_bluetooth_writable:s0
-
-# Display
-/sys/class/mdnie/mdnie/scenario u:object_r:sysfs_display:s0
-/sys/class/mdnie/mdnie/mode u:object_r:sysfs_display:s0
-
-# GPS
-/dev/ttySAC1 u:object_r:gps_device:s0
-/system/bin/gpsd u:object_r:gpsd_exec:s0
-
-# Sensors
-/dev/akm8963 u:object_r:sensors_device:s0
-/efs/gyro_cal_data u:object_r:sensors_data_file:s0
-
-# Wifi
-/dev/rfkill u:object_r:rfkill_device:s0
-/factory/wifi/.mac.info u:object_r:wifi_data_file:s0
-
-# Firmwares
-/system/vendor/firmware(/.*)? u:object_r:firmware_exynos:s0
-/system/vendor/firmware/mfc_fw.bin u:object_r:firmware_mfc:s0
-/data/cfw(/.*)? u:object_r:firmware_exynos:s0
-
-# Vibrator
-/dev/tspdrv u:object_r:input_device:s0
-/sys/vibrator/pwm_val u:object_r:sysfs:s0
-
-# Misc
-/dev/HPD u:object_r:video_device:s0
-/dev/fmradio u:object_r:fm_radio_device:s0
-/dev/ttyGS[0-9]* u:object_r:gadget_serial_device:s0
diff --git a/sepolicy/gpsd.te b/sepolicy/gpsd.te
deleted file mode 100644
index 9d588f3..0000000
--- a/sepolicy/gpsd.te
+++ /dev/null
@@ -1,10 +0,0 @@
-allow gpsd rild:unix_stream_socket connectto;
-allow gpsd system_data_file:dir { add_name write };
-#allow gpsd system_data_file:file { create write lock open };
-allow gpsd system_data_file:fifo_file { create read write open setattr };
-allow gpsd system_data_file:dir { read write setattr open add_name };
-allow gpsd sysfs_wake_lock:file { read write open };
-allow gpsd servicemanager:binder call;
-allow gpsd system_server:binder call;
-allow gpsd system_server:unix_stream_socket { read write };
-
diff --git a/sepolicy/hostapd.te b/sepolicy/hostapd.te
deleted file mode 100644
index 7e0b91b..0000000
--- a/sepolicy/hostapd.te
+++ /dev/null
@@ -1 +0,0 @@
-allow hostapd rfkill_device:chr_file { read open };
diff --git a/sepolicy/mediaserver.te b/sepolicy/mediaserver.te
deleted file mode 100644
index 0cfdc9c..0000000
--- a/sepolicy/mediaserver.te
+++ /dev/null
@@ -1,6 +0,0 @@
-allow mediaserver camera_data_file:file write;
-allow mediaserver mfc_device:chr_file { read write ioctl open };
-allow mediaserver ump_device:chr_file { read write ioctl open };
-
-# Bluetooth audio
-allow mediaserver bluetooth:unix_stream_socket { connectto };
diff --git a/sepolicy/netd.te b/sepolicy/netd.te
deleted file mode 100644
index 30d6940..0000000
--- a/sepolicy/netd.te
+++ /dev/null
@@ -1,3 +0,0 @@
-allow netd self:capability fsetid;
-allow netd init:tcp_socket { read write getopt };
-allow netd log_device:chr_file { open write };
diff --git a/sepolicy/nfc.te b/sepolicy/nfc.te
deleted file mode 100644
index 99b86bd..0000000
--- a/sepolicy/nfc.te
+++ /dev/null
@@ -1,2 +0,0 @@
-allow nfc firmware_camera:dir search;
-allow nfc log_device:chr_file { write };
diff --git a/sepolicy/platform_app.te b/sepolicy/platform_app.te
deleted file mode 100644
index fd825e9..0000000
--- a/sepolicy/platform_app.te
+++ /dev/null
@@ -1 +0,0 @@
-allow platform_app ump_device:chr_file { read write ioctl open };
diff --git a/sepolicy/radio.te b/sepolicy/radio.te
deleted file mode 100644
index c19e0cf..0000000
--- a/sepolicy/radio.te
+++ /dev/null
@@ -1,2 +0,0 @@
-allow radio ump_device:chr_file { read write ioctl open };
-
diff --git a/sepolicy/rild.te b/sepolicy/rild.te
deleted file mode 100644
index 32f520c..0000000
--- a/sepolicy/rild.te
+++ /dev/null
@@ -1,3 +0,0 @@
-allow rild self:process execmem;
-#allow rild system_data_file:dir { write remove_name add_name setattr };
-allow rild system_data_file:file { write create unlink setattr };
diff --git a/sepolicy/service_contexts b/sepolicy/service_contexts
deleted file mode 100644
index c01caa2..0000000
--- a/sepolicy/service_contexts
+++ /dev/null
@@ -1,2 +0,0 @@
-Exynos.HWCService u:object_r:surfaceflinger_service:s0
-Exynos.IPService u:object_r:surfaceflinger_service:s0
diff --git a/sepolicy/servicemanager.te b/sepolicy/servicemanager.te
deleted file mode 100644
index 4f5475d..0000000
--- a/sepolicy/servicemanager.te
+++ /dev/null
@@ -1,5 +0,0 @@
-allow servicemanager gpsd:dir search;
-allow servicemanager gpsd:file { read open };
-allow servicemanager gpsd:process getattr;
-allow servicemanager log_device:chr_file { open write };
-
diff --git a/sepolicy/shared_relro.te b/sepolicy/shared_relro.te
deleted file mode 100644
index f7f75b3..0000000
--- a/sepolicy/shared_relro.te
+++ /dev/null
@@ -1 +0,0 @@
-allow shared_relro log_device:chr_file { write };
diff --git a/sepolicy/surfaceflinger.te b/sepolicy/surfaceflinger.te
deleted file mode 100644
index a9a8d6a..0000000
--- a/sepolicy/surfaceflinger.te
+++ /dev/null
@@ -1 +0,0 @@
-allow surfaceflinger ump_device:chr_file { open read write ioctl };
diff --git a/sepolicy/system_app.te b/sepolicy/system_app.te
deleted file mode 100644
index 2cb531f..0000000
--- a/sepolicy/system_app.te
+++ /dev/null
@@ -1,3 +0,0 @@
-allow system_app sysfs_display:file { write getattr open };
-allow system_app ump_device:chr_file { ioctl open read write };
-
diff --git a/sepolicy/system_server.te b/sepolicy/system_server.te
deleted file mode 100644
index 4b700e5..0000000
--- a/sepolicy/system_server.te
+++ /dev/null
@@ -1,10 +0,0 @@
-allow system_server efs_file:file { read open };
-allow system_server efs_file:dir search;
-allow system_server sensors_data_file:file { read open };
-allow system_server uhid_device:chr_file { read write ioctl open };
-allow system_server ump_device:chr_file { read write ioctl open };
-allow system_server gpsd:binder transfer;
-allow system_server dex2oat_exec:file { execute execute_no_trans read open };
-allow system_server system_file:file { execmod };
-allow system_server self:capability sys_module;
-
diff --git a/sepolicy/ueventd.te b/sepolicy/ueventd.te
deleted file mode 100644
index af59995..0000000
--- a/sepolicy/ueventd.te
+++ /dev/null
@@ -1,3 +0,0 @@
-allow ueventd firmware_mfc:file { read getattr open };
-allow ueventd firmware_exynos:dir search;
-allow ueventd firmware_exynos:file { read getattr open };
diff --git a/sepolicy/untrusted_app.te b/sepolicy/untrusted_app.te
deleted file mode 100644
index a937288..0000000
--- a/sepolicy/untrusted_app.te
+++ /dev/null
@@ -1,7 +0,0 @@
-allow untrusted_app ump_device:chr_file { open read write ioctl };
-allow untrusted_app block_device:dir { open read search };
-allow untrusted_app kernel:system { module_request };
-allow untrusted_app firmware_camera:dir { read getattr open };
-allow untrusted_app firmware_camera:file getattr;
-allow untrusted_app firmware_mfc:file getattr;
-
diff --git a/sepolicy/vold.te b/sepolicy/vold.te
deleted file mode 100644
index 1418d7a..0000000
--- a/sepolicy/vold.te
+++ /dev/null
@@ -1,3 +0,0 @@
-allow vold efs_file:dir { read getattr open ioctl };
-allow vold boot_block_device:blk_file { read write open ioctl getattr };
-
diff --git a/sepolicy/wpa.te b/sepolicy/wpa.te
deleted file mode 100644
index b44a49c..0000000
--- a/sepolicy/wpa.te
+++ /dev/null
@@ -1,2 +0,0 @@
-allow wpa rfkill_device:chr_file { read open };
-allow wpa log_device:chr_file { open write };
diff --git a/sepolicy/wpa_supplicant.te b/sepolicy/wpa_supplicant.te
deleted file mode 100644
index 98fdc25..0000000
--- a/sepolicy/wpa_supplicant.te
+++ /dev/null
@@ -1,11 +0,0 @@
-allow wpa init:unix_dgram_socket { read write };
-
-# logwrapper used with wpa_supplicant
-allow wpa devpts:chr_file { read write };
-
-allow wpa wpa_socket:unix_dgram_socket { read write };
-allow wpa_socket system_server:unix_dgram_socket sendto;
-
-allow wpa_socket wifi_data_file:sock_file unlink;
-allow wpa rfkill_device:chr_file rw_file_perms;
-allow wpa log_device:chr_file { open };
diff --git a/sepolicy/zygote.te b/sepolicy/zygote.te
deleted file mode 100644
index 05c4d7d..0000000
--- a/sepolicy/zygote.te
+++ /dev/null
@@ -1 +0,0 @@
-allow zygote log_device:chr_file { open };