Commit Graph

38 Commits

Author SHA1 Message Date
chrisl7 8f99859250 sepolicy: bengal: Add pwr and powermodule sepolicy rules
[1] - From Kalama

Change-Id: Idff6ec9ce21ac4dc02b6ebfebc72dfdb0067fa8e
Signed-off-by: chrisl7 <wandersonrodriguesf1@gmail.com>
2023-09-10 10:51:43 +05:30
chrisl7 4a249ab6a6 sepolicy: Label qrtr-lookup
Change-Id: Ia8646d38855bb0bf3509f844162b7709856be350
Signed-off-by: chrisl7 <wandersonrodriguesf1@gmail.com>
2023-09-10 10:51:43 +05:30
Kunmun 49e886f064 Revert "common: sepolicy: Add back vendor/vm-system sepolicy rules"
This reverts commit a418e39350.

Reason for revert: Already present in sepolicy_vndr hence conflicts with the build and don't really seem any point in having it.

Change-Id: I6ef50d7e7e57c7478b42526cb6aa386ece78c639
2023-09-03 06:56:19 +00:00
Arian e9c58ad4d0 common: sepolicy: Revert "Removal of CVP and Panorama services/SE files"
This reverts commit c6ad06cd9e61d31bd350a0e317094d828af4f0c5.

[1] - https://gerrit.aospa.co/c/AOSPA/android_device_qcom_sepolicy_vndr/+/33659

Change-Id: I5040da91a9464b86e864b1b46f084ffd00a359ee
Signed-off-by: chrisl7 <wandersonrodriguesf1@gmail.com>
2023-08-31 12:05:12 +00:00
Arian 0668088b6d common: sepolicy: Revert "Removal of SCVE Panorama services file"
This reverts commit e427726d40e6222e4030c79188892fbc12b18df8.

[1] - https://gerrit.aospa.co/c/AOSPA/android_device_qcom_sepolicy_vndr/+/33658

Change-Id: I0bdeed912809dde24e44899dd28051597f7b354b
Signed-off-by: chrisl7 <wandersonrodriguesf1@gmail.com>
2023-08-31 12:04:56 +00:00
chrisl7 a418e39350 common: sepolicy: Add back vendor/vm-system sepolicy rules
Change-Id: Icfc80b7ac526b7cb3c8fcad2e1ddc2f3e7ab9bec
Signed-off-by: chrisl7 <wandersonrodriguesf1@gmail.com>
2023-08-31 12:04:25 +00:00
chrisl7 6774b84b9b common: sepolicy: bengal: Add missing label partitions to 5.15 variant
[1] - I don't know why qcom left this missing, but it breaks flash build on sideload, as well as a possible OTA update.

Change-Id: I2f209f73b6199a93fe5e4745ac4410f6090daba0
Signed-off-by: chrisl7 <wandersonrodriguesf1@gmail.com>
2023-08-26 23:16:13 +00:00
Jprimero15 2b9c5a2d01 common: sepolicy: lahaina: Remove all duplicates
* already existed in sepolicy_vndr.

Change-Id: I43a0ae29821823c5988ab49c822cf244dc3253a9
2023-07-09 15:26:47 +00:00
Jprimero15 db236980f2 common: sepolicy: lahaina: Remove duplicated labels
Added at 6847922d6d
but already existed in sepolicy_vndr.

Change-Id: I5846db90f9f44986e948cd42d2fe89d0bb783ee5
2023-07-02 14:14:58 +00:00
BladeRunner-A2C 159fb0fde2
common: sepolicy: Remove duplicate declarations
Already defined at 'sepolicy_vndr'

Change-Id: I5664aa362c5cdb0b6c34f3aac1f16e134994b0c3
Signed-off-by: BladeRunner-A2C <john.smith@unused.email>
2023-06-30 21:02:00 +06:00
Michael Bestas 9e87365194 sepolicy: qva: label bengal extcon
Change-Id: Ie9f50b544665a8b66b172f35c0f45c5404628595
Signed-off-by: chrisl7 <wandersonrodriguesf1@gmail.com>
2023-06-26 13:06:11 +00:00
Michael Bestas 4727d6c50e sepolicy: bengal: Label discard_max_bytes sysfs
Change-Id: I1cc993d353cf2966685a3276b4c97d86c7030326
Signed-off-by: chrisl7 <wandersonrodriguesf1@gmail.com>
2023-06-26 13:06:04 +00:00
chrisl7 6c9c88bb3e common: sepolicy: Update SM8450 sepolicy rules
[1] - LA.VENDOR.1.0.r1-22200-WAIPIO.QSSI14.0

Change-Id: I26b9080ec5419d45f3b4d1efe793b61b4708de06
Signed-off-by: chrisl7 <wandersonrodriguesf1@gmail.com>
2023-06-26 13:05:01 +00:00
chrisl7 6847922d6d sepolicy: Update SM8150-8350 sepolicy rules
[1] - LA.UM.9.14.1.r1-10000-QCM6490.QSSI13.0

Change-Id: I724f66c9c0076cfadcbb6ade745c9b83d5992e7f
Signed-off-by: chrisl7 <wandersonrodriguesf1@gmail.com>
2023-06-26 13:03:57 +00:00
chrisl7 e27d9d435e sepolicy: Import missing SM8450 sepolicy definition from LA.VENDOR.1.0.r1-21200-WAIPIO.QSSI13.0
Change-Id: I17b7efdd84e3f95fd1db796473a1cc2e926619ad
Signed-off-by: chrisl7 <wandersonrodriguesf1@gmail.com>
2023-05-14 06:52:21 -04:00
chrisl7 db2202c52b sepolicy: qva: Fix vendor_qcc_trd_2 denials
Change-Id: Id005c897cb2b1cc77d9aa9eef9304499f29f0070
Signed-off-by: chrisl7 <wandersonrodriguesf1@gmail.com>
2023-04-17 10:36:08 +00:00
chrisl7 909a0dfee4 sepolicy: qva: Add missing hvdcp sepolicy definitions
Change-Id: I1ddcb79c7d4de6276b65d21a14bed1689267c7a1
Signed-off-by: chrisl7 <wandersonrodriguesf1@gmail.com>
2023-04-17 07:35:40 +00:00
Jake Weinstein 72c649838a common: sepolicy: lahaina: Remove qwesd policy
This is in common sepolicy_vndr now.

Change-Id: I58b8bd8bf7296751fbade8de8fb4eefab688a13e
2023-03-14 01:16:51 -03:00
Jake Weinstein 2613ba50cd common: Remove eID policies from holi and lahaina
These are no longer defined in LA.VENDOR.13.2.0
sepolicy_vndr. We don't use eID anyway, so
remove from common policies too.

Change-Id: Idcf15d1c7aa8c2fb2924bd2c81731d6b034ea84a
2023-03-14 01:16:51 -03:00
chrisl7 c3ae3ca3de common: sepolicy: Import missing sepolicy rules from taro
Change-Id: I2f6f49df4a9113e65c6250801775e452b22c4e90
Signed-off-by: chrisl7 <wandersonrodriguesf1@gmail.com>
2023-03-14 01:16:51 -03:00
chrisl7 ce7ff0e820 common: sepolicy: Adapt sepolicy to LA.VENDOR.13.2.0.r1-13100-KAILUA.0
[1] - Move partally bengal to sepolicy_vndr, keep 4.19 specifc nodes here
[2] - Keep kona here for now
[3] - Import msmsteppe from taro sepolicy_vndr
[4] - Use neuralnetworks on sepolicy_vndr

Change-Id: Icda5ebce28b97d45c8067f08be98d85313ab1474
Signed-off-by: chrisl7 <wandersonrodriguesf1@gmail.com>
2023-03-14 01:16:51 -03:00
chrisl7 7f06544cb0 vendor: telephony Enable singlereg.feature for all 4.14, 4.19 and 5.4
[1] - It appears that Qualcomm has enabled this for all through IQtiRadio 2.7 in descending order, starting with 9.16, 9.15, 9.14...
      all our latest bsp are with IQtiRadio 2.7, so enable it

[2] - Fix IUceService logspam

Change-Id: I24bb664bda3559751b7e3757420be4d290765a59
Signed-off-by: chrisl7 <wandersonrodriguesf1@gmail.com>
2023-02-27 00:00:00 +00:00
Ahmed Harhash 1c9e2c17c2 common: sepolicy: kona: Drop qtr_sdk_use policy
Change-Id: Iab055b6fd5c1c8343272d5286c71886ac61105a1
2023-02-16 18:34:09 +00:00
Pavan Kumar M 8bb35d5a51 common: sepolicy: Add sepolicy rules to run imsdaemon on bengal
Change-Id: I29a810f7daf1aa147261b08b4005ee6edb06267a
Signed-off-by: chrisl7 <wandersonrodriguesf1@gmail.com>
2023-02-15 20:20:12 +00:00
Ashok Gandla cbf98010b6 common: sepolicy: QCS6125: support for vendor_boot and init_boot partion
Included vendor_boot and init_boot partion for AB OTA

Change-Id: Iaaf1c6660a6691ed6a474ed6debdc4d239f7e52b
Signed-off-by: chrisl7 <wandersonrodriguesf1@gmail.com>
2023-02-15 20:18:48 +00:00
chrisl7 6e32a4d4dd sepolicy: Update SM8150-8350 sepolicy
[1] - From LA.UM.9.16.r1-12800-MANNAR.QSSI13.0

Change-Id: I1d78ebd7336b550792a797b3e243472288a73b73
Signed-off-by: chrisl7 <wandersonrodriguesf1@gmail.com>
2023-02-15 20:18:20 +00:00
UtsavBalar1231 917d987f7f common: sepolicy: Allow mediaserver to access QSPM HAL
mediserver is looking for QSPM hwservice to initiate adreno profile processing.
libadreno_app_profiles checks for QSPM hwservice access to get memory pointer from QSPM
for adreno profile processing.
So it is required for us to allow mediaserver access to fetch QSPM HAL service.

This fixes following warning
E SELinux : avc:  denied  { find } for interface=vendor.qti.qspmhal::IQspmhal sid=u:r:mediaserver:s0 pid=1437 scontext=u:r:mediaserver:s0 tcontext=u:object_r:vendor_hal_qspmhal_hwservice:s0 tclass=hwservice_manager permissive=0
W Adreno-AppProfiles: Could not find QSPM HAL service. Skipping adreno profile processing.

Change-Id: If0460b4bf7e8981aa98521824b34c1326f243c15
Signed-off-by: UtsavBalar1231 <utsavbalar1231@gmail.com>
Signed-off-by: Omkar Chandorkar <gotenksIN@aospa.co>
Signed-off-by: chrisl7 <wandersonrodriguesf1@gmail.com>
2022-11-13 16:53:52 +00:00
Omkar Chandorkar 2c4028daad common: sepolicy: Allow Secure Element to read NFC chipid
Change-Id: I3a15e4a2fa0115455bdd1ca206830baee873dbfe
Signed-off-by: Omkar Chandorkar <gotenksIN@aospa.co>
2022-11-09 06:44:31 +00:00
Omkar Chandorkar 1c575c42d0 sepolicy_vndr: qva: allow vppservice to access ion_device
Signed-off-by: Omkar Chandorkar <gotenksIN@aospa.co>
Change-Id: I10edaf60af3682599b55d9877f7ef11e5aba9b81
2022-10-29 11:58:28 +09:00
Omkar Chandorkar 782b7e8229 sepolicy_vndr: qva: allow esepowermanager to access ion_device
Signed-off-by: Omkar Chandorkar <gotenksIN@aospa.co>
Change-Id: I16291a16ffac819960aeb681af9ecae1b48f4b61
2022-10-29 11:58:28 +09:00
Omkar Chandorkar 0e4a4ed479 sepolicy_vndr: qva: allow vendor_hal_qteeconnector to access ion_devices
- addresses
W qteeconnector@1: type=1400 audit(0.0:144): avc: denied { read } for name="ion" dev="tmpfs" ino=1280 scontext=u:r:vendor_hal_qteeconnector_qti:s0 tcontext=u:object_r:ion_device:s0 tclass=chr_file permissive=0

Signed-off-by: Omkar Chandorkar <gotenksIN@aospa.co>
Change-Id: I743a9efe95c4d56dd613722f6e61c200297a0b16
2022-10-29 11:58:28 +09:00
Omkar Chandorkar 1dbfe6c867 sepolicy_vndr: qva: allow netmgrd to modify rmnet module parameters
- addresses
W netmgrd : type=1400 audit(0.0:135): avc: denied { search } for name="parameters" dev="sysfs" ino=51272 scontext=u:r:vendor_netmgrd:s0 tcontext=u:object_r:vendor_sysfs_rmnet:s0 tclass=dir permissive=0

Change-Id: I88a99677ae3a1a0070111d1978c48d1cf43094e1
Signed-off-by: Omkar Chandorkar <gotenksIN@aospa.co>
2022-10-29 11:58:28 +09:00
Arian 8ede8d6ad2 sepolicy_vndr: qva: Update vendor property types
Change-Id: I93335f35c94250bc62defb36552ac5db2efbb98b
2022-10-29 11:58:28 +09:00
chrisl7 df490c97ef sepolicy: vndr: Remove hal_rcsservice to all platform
Signed-off-by: chrisl7 <wandersonrodriguesf1@gmail.com>
Change-Id: I140ee0b92bd1b47bb91e1c2df422e7e2b2676774
2022-10-29 11:58:28 +09:00
Arian 87fd803d2a sepolicy_vndr: qva: Remove mediatranscoding sepolicy
commit [1] made the mediatranscoding type private.
Instead [2] was merged into android12-gsi which
moves the rule to system/sepolicy.

[1]: 63655462bb
[2]: https://android-review.googlesource.com/c/platform/system/sepolicy/+/1880325

Change-Id: Ic6d9db21c437cbafe4d008eba9d67c5f3ce5842a

qva: Remove mediatranscoding sepolicy

Change-Id: Ie9818d52e997de166f8f9229369d2e29f78d8e95
2022-10-29 11:58:28 +09:00
Omkar Chandorkar ae1f27b0b6 kona: fix compile
Change-Id: I18270f41c2d53ce2b3628ab4bc843e8560557ba3
Signed-off-by: Omkar Chandorkar <gotenksIN@aospa.co>
2022-10-29 11:58:28 +09:00
Jake Weinstein 5a5b143fcd sepolicy: Add missing 8150-8350 policies from LA.UM.9.14
Change-Id: Ibdecba5a310e3a2af4bb54f625986c8126d9669a
2022-10-29 11:58:28 +09:00
Jake Weinstein dcca525fb8 Revert "removing some of the target dir from the component."
This adds back SDM845, SM6125, SM8150, SM8250, SM8350,
and others.

This reverts commit 4346ce0d904984c5582d62cd9586a15abf2d62d5.

Change-Id: Idc0f96e28b4d47481d1281d34bf13859a45be1d8
2022-10-29 05:03:45 +09:00