Commit Graph

36 Commits

Author SHA1 Message Date
Linux Build Service Account ce1fc7297e Merge "add tloc daemon to sec_config" 2017-09-11 09:12:01 -07:00
Mike Cailean d0f6eac573 Allow QMID service to aquire net_raw permission
Allow QMID service to aquire net_raw permission
for GPS to fix GTP WAA based Cell-id injection

Change-Id: Ibcbf2516d32f46fda358d9ec4db7cd68f6174a11
CRs-fixed: 2093489
2017-08-24 11:22:15 -07:00
Chris Lew 1fa50d2a03 common: sec_config: Add 2901 to IPC Router config
The diag node is moving to oem_2901 group permissions
instead of diag permissions. Update IPC Router security
config to allow diag communication through sockets.

Change-Id: I46411aff66a5e9fd6478924bfa92d575030305ea
2017-07-31 17:38:33 -07:00
Kineret Berger 2102458c7b add tloc daemon to sec_config
in order to communicate with the modem we need permission for IPC router.
adding tloc daemon group (1026) to service 0x10

Change-Id: I3ab4a37bbed3fd496a73ffa7d12f908d8d8b8c36
CRs-Fixed: 1106225
2017-06-15 04:13:51 -07:00
Jaime A Lopez-Sollano 1c9d06db97 PDR: Allow ril to access the locator and notifier services.
In order to be notified of PDR status, ril needs access to the QMI SERVREG_LOG
and QMI_SERVREG_NOTIF services

Change-Id: I99866e34994159578faa8a689b66184ca5d5d99b
2017-05-17 05:01:00 -07:00
Yuanyuan Liu c1175c6d36 sec_config: Add system permission for DMS QMI service
Add system permission for DMS as cnss-daemon runs in system group
and uses DMS service.

Change-Id: Iffcf23afc3940a7acf28bb9c9b47648475cc9152
CRs-Fixed: 1067995
2016-09-16 14:53:24 -07:00
Yuanyuan Liu 791c1aac81 sec_config: Add security rule for WLPS service
Add security rule for WLPS service, which allows WLPS client to
communicate without net_raw privileges.

Change-Id: I4f382c90838f8994f3df25ee40f7769a52376be5
CRs-Fixed: 1050486
2016-08-04 09:44:12 -07:00
Yuanyuan Liu c5be2cd811 sec_config: Add security rule for WLFW service
Add security rule for WLFW service, which allows WLFW client to
communicate without net_raw privileges.

Change-Id: I772f1ebf145fb810c81abe93a15adbc32f0b2bd1
CRs-Fixed: 1048891
2016-08-02 14:13:42 -07:00
Linux Build Service Account 660853c823 Merge "diag: Change access permission for DIAG services to new value" 2016-07-30 02:54:23 -07:00
Linux Build Service Account f9d1412c53 Merge "Sensors: Allow access to Sensors services from Cameraserver." 2016-07-21 01:19:32 -07:00
Chris Lew cc6dde1f0d diag: Change access permission for DIAG services to new value
There is a new value for AID_QCOM_DIAG on N builds. This change
updates the IPC security rules to use the new value.

CRs-Fixed: 1034114
Change-Id: I191be232fa9f55c2889c65f491ca2096b7f2a19b
2016-07-20 15:44:47 -07:00
Mridul Singh 1f93c18618 Sensors: Allow access to Sensors services from Cameraserver.
Allow cameraserver group to acess the sensors QMI services.

Change-Id: Icb033f28a4b8f925fadaff49cd8a4f641ea9eb73
2016-07-05 15:52:25 -07:00
Harikrishnan Hariharan 039eb2038a Remove unnecessary net_raw/net_admin from location modules
Remove net_raw/net_admin from groups for service properties
of loc_launcher in init.qcom.rc.  For accessing qmi service
16, location modules need to have the qmi socket to give
permission to gps gid rather than net_raw. Modifies sec_
config for to allow this.

Change-Id: I2c687d3e396a055212951bb3f11534af718acba5
CRs-Fixed: 1026637
2016-06-23 21:39:55 -07:00
Ananda Kishore 97744b8e8d Sensors: Allow access to Sensors services from System Group
Allow members of the System group, specifically the Android
System Server, and QSensorTest, to access the Sensors QMI services

Change-Id: I57d2a487269a2e7751c12f4d330c06531ec59228
2016-06-06 23:52:31 +05:30
Rafeeqh Shaik c29f12c2af RILD access to new QMI HTTP service
Grant RILD access to new QMI HTTP service.

Change-Id: I485fb61598fba969306551c96ecec99a9785fc41
CRs-Fixed: 1015264
2016-05-30 22:15:09 -07:00
Jiju Kinattingal 0ecebc52e3 Allow rild to communicate with QMI LTE service
Add IPC security rule to allow rild to communicate
with QMI LTE service

Change-Id: Id5204eb9a66d904313bf64915136aa64bf991809
CRs-Fixed: 1006583
2016-05-23 20:28:35 -07:00
Jerome Stanislaus d9b63d4578 sec_policy: added policy for OTT qmi service in ril
added policy for OTT qmi service in ril

Change-Id: I5367c522f57edb9b10b66f1982cffd1df51f5c6b
CRs-fixed: 868425
2015-12-21 11:47:48 -08:00
Adnan Reza 0ab6fa65e3 allow qmi csvt service to have radio previlage
QMI Circuit Switched Video Telephony

Change-Id: I2a9ff770cf2558cd3807baa1f6ec0dd2351cf6bf
2015-08-19 18:18:09 -06:00
Ravi Aravamudhan 1112b16c55 diag: Add AID_QCOM_DIAG access permission to DIAG services
Enable AID_QCOM_DIAG group access to communicate with DIAG
services over IPC router.

Change-Id: I97b1aed9fdbe448a88119e5dfb2bb2d2f0f30266
2015-06-05 15:15:13 -07:00
Linux Build Service Account 854afae90e Merge "DPM: merge duplicate entry for QMI WDS service." 2015-05-29 18:47:40 -07:00
Amol Mahesh b10ca7cb6c Location: Add "gps" permission to allow access to Loc QMI
Add "gps" permission to allow access to Loc QMI

Change-Id: I928bc0440230f3717d5281ac0120812b23cf9107
2015-05-27 14:31:02 -07:00
Susheel Yadagiri 3d68cc3049 DPM: merge duplicate entry for QMI WDS service.
removed line for AID_SYSTEM and merged it with pre-existing entry.

Change-Id: Ia3c2858272f2189d96595f8ba6c8a1c64d5dc64d
CRs-Fixed: 838924
2015-05-21 09:37:12 -07:00
Linux Build Service Account dc1011ad23 Merge "ATFWD: Add permission for radio group" 2015-05-18 19:47:20 -07:00
Linux Build Service Account 93b206080f Merge "Add UIM, CAT and IMSA service access to radio group." 2015-05-18 15:39:35 -07:00
Dheeraj Shetty 4be9ea7496 ATFWD: Add permission for radio group
For IPC router access for QMI AT  service for ATFWD daemon.

Change-Id: If641327c7fef55f3f95ca6be7f8539c44b4f372f
2015-05-18 12:55:08 -07:00
Valeri Atamaniouk e374174879 sec_config: added declaration for qmi-slim service
Enabled access to qmi-slim service from gps and net_raw groups.

CRs-Fixed: 785935
Change-Id: Id649f9e9ea292acc64a26678e75fd60b98e5e486
2015-05-13 12:28:46 +03:00
Dheeraj Shetty e9f9b9abe4 Add UIM, CAT and IMSA service access to radio group.
Add UIM, CAT and IMSA service access to radio group.

Change-Id: I95f7845dd8b929e4068894e29fecd66a0eca588d
2015-05-08 15:44:04 -07:00
Susheel Yadagiri 46c2fbe6fd DPM: add DFS and WDS service access permission to system.
Enable system group access to communicate with WDS and DFS
service over IPC router.

Change-Id: I6bb8e1bf76d73922f02c63d901e0db8bdbf92263
CRs-Fixed: 820779
2015-04-16 14:16:05 -07:00
Jerome Stanislaus 16b25ee0de sec_config: add dpm service access permission to radio
Enable radio group processes to communicate with
DPM service over IPC router.

Change-Id: I992d39cbaf031b74e757519550977b3b6165cd68
CRs-Fixed: 800095
2015-04-07 12:16:59 -06:00
adnan reza a12ccdfcb0 QCRIL: add permission for radio group
For some qmi services for RILD

Change-Id: I50513ff6419a7de9fb201a0a8551abad76eedb97
2015-04-06 16:57:51 -06:00
Jerome Stanislaus 0a376cf4b7 sec_policy: added policy for qmi services in ril
added security policy for qmi services in ril

Change-Id: I44626f4484d90ba09f618183cc661a00696b65f5
CRs-Fixed: 799663
2015-04-02 12:48:45 -06:00
Naina Nalluri 5dfcae18c6 Add permission for rild to access QMI UIMRMT
Allows rild to access QMI UIMRMT
service.

Change-Id: Ib8259029bbadc381efe4d614ea717fa1fbfaafdc
CRs-fixed: 762101
2014-11-26 22:14:33 -08:00
Avijit Kanti Das b43c69a629 Provide QMI permission for IMS on APPS
Change-Id: I9f96a7ab2c15217253bd2c1a646b9dc5d761f9a3
2014-09-16 11:09:07 -07:00
Satya Durga Srinivasu Prabhala 33f998a68f sec_config: Allow sensors group process to QMI Sensor services
Enable Sensors QMI services for sensors process groups.

CRs-Fixed: 431081

Change-Id: Ibbdb0e07d9497e1809e7ef817e8400d4a9e4f8c1
2014-07-30 10:49:14 -07:00
David Ng 4d5bde5669 sec_config: Allow system and net_raw group processes to QMI SS CTL
Enable SS CTL (subsystem control) QMI service for system and net_raw
process groups.  This allows those processes to control subsystem
restart and shutdown.

Change-Id: I3fa81c96406f7b7f4dd6cf1d14dfdd2961c1bc7c
2013-09-12 16:12:19 -07:00
Dante Russo a81452ffa9 Added sec_config for gps/location
Granting security permission to communicate over
IPC router

Change-Id: I276f84d6de42c18334a6351e10960fa522e4248c
2013-07-03 11:46:50 -07:00