blob: bd563d899055bf7aeb0fa54be81ac7c162b81a1e [file] [log] [blame]
type init-insmod-sh, domain;
type init-insmod-sh_exec, exec_type, vendor_file_type, file_type;
init_daemon_domain(init-insmod-sh)
allow init-insmod-sh vendor_toolbox_exec:file rx_file_perms;
# Set the vendor.all.modules.ready property
set_prop(init-insmod-sh, vendor_device_prop)
# Allow insmod
allow init-insmod-sh self:capability sys_module;
allow init-insmod-sh vendor_file:system module_load;
allow init-insmod-sh kernel:key search;
allow init-insmod-sh sysfs_msm_boot:file w_file_perms;
# modprobe need proc_modules
allow init-insmod-sh proc_modules:file r_file_perms;
allow init-insmod-sh debugfs_ipc:dir search;
allow init-insmod-sh debugfs_wlan:dir search;