platform_app.te 873 Bytes
Newer Older
1 2 3 4 5
###
### Apps signed with the platform key.
###

type platform_app, domain;
6
permissive_or_unconfined(platform_app)
7 8 9 10 11 12
app_domain(platform_app)
platform_app_domain(platform_app)
# Access the network.
net_domain(platform_app)
# Access bluetooth.
bluetooth_domain(platform_app)
13
# Read from /data/local/tmp or /data/data/com.android.shell.
14 15 16 17 18 19 20 21 22 23 24
allow platform_app shell_data_file:dir search;
allow platform_app shell_data_file:file { open getattr read };
allow platform_app shell_data_file:lnk_file read;
# Populate /data/app/vmdl*.tmp, /data/app-private/vmdl*.tmp files
# created by system server.
allow platform_app { apk_tmp_file apk_private_tmp_file }:file rw_file_perms;
allow platform_app apk_private_data_file:dir search;
# ASEC
allow platform_app asec_apk_file:dir create_dir_perms;
allow platform_app asec_apk_file:file create_file_perms;

25
# inherits from platformappdomain.te