Changeset View
Changeset View
Standalone View
Standalone View
autotests/folding/test.cil.fold
Show First 20 Lines • Show All 42 Lines • ▼ Show 20 Line(s) | |||||
43 | 43 | | |||
44 | ; filecon | 44 | ; filecon | ||
45 | (filecon "/system/bin/run-as" file runas_exec_context) | 45 | (filecon "/system/bin/run-as" file runas_exec_context) | ||
46 | (filecon "/dev/socket/wpa_wlan[0-9]" any u:object_r:wpa.socket:s0-s0) | 46 | (filecon "/dev/socket/wpa_wlan[0-9]" any u:object_r:wpa.socket:s0-s0) | ||
47 | (filecon "/data/local/mine" dir ()) | 47 | (filecon "/data/local/mine" dir ()) | ||
48 | (classcommon file any dir) | 48 | (classcommon file any dir) | ||
49 | (file any dir) | 49 | (file any dir) | ||
50 | ; portcon | 50 | ; portcon | ||
51 | (portcon tcp 3333 (unconfined.user object_r unconfined.object levelrange_1)) | 51 | (portcon sctp 3333 (unconfined.user object_r unconfined.object levelrange_1)) | ||
52 | (portcon udp 4444 (unconfined.user object_r unconfined.object ((s0) level_2))) | 52 | (portcon udp 4444 (unconfined.user object_r unconfined.object ((s0) level_2))) | ||
53 | (defaultrole tcp udp) | 53 | (defaultrole tcp udp) | ||
54 | (tcp udp) | 54 | (tcp udp) | ||
55 | ; fsuse | 55 | ; fsuse | ||
56 | (fsuse xattr ext4 file.labeledfs_context) | 56 | (fsuse xattr ext4 file.labeledfs_context) | ||
57 | (fsuse task pipefs file.pipefs_context) | 57 | (fsuse task pipefs file.pipefs_context) | ||
58 | (fsuse trans tmpfs file.tmpfs_context) | 58 | (fsuse trans tmpfs file.tmpfs_context) | ||
59 | (typemember xattr task trans) | 59 | (typemember xattr task trans) | ||
▲ Show 20 Lines • Show All 77 Lines • ▼ Show 20 Line(s) | |||||
137 | 137 | | |||
138 | (context runas_exec_context (u object_r exec low_low)) | 138 | (context runas_exec_context (u object_r exec low_low)) | ||
139 | (filecon "/system/bin/run-as" file runas_exec_context) | 139 | (filecon "/system/bin/run-as" file runas_exec_context) | ||
140 | 140 | | |||
141 | (in file | 141 | (in file | ||
142 | (genfscon rootfs / rootfs_context) | 142 | (genfscon rootfs / rootfs_context) | ||
143 | (genfscon selinuxfs / selinuxfs_context) | 143 | (genfscon selinuxfs / selinuxfs_context) | ||
144 | ) | 144 | ) | ||
145 | | ||||
146 | ; ioctl & call | ||||
147 | (allowx x bin_t (ioctl policy.file (range 0x1000 0x11FF))) ; ioctl kind | ||||
148 | (ioctl read | ||||
149 | find connectto) ; kind or permission? | ||||
150 | (ioctl read find connectto) ; ioctl permission | ||||
151 | (ioctl read ) | ||||
152 | (call ioctl read find connectto) ; statement or permission? | ||||
153 | ( call ) ; call permission |