Home
last modified time | relevance | path

Searched refs:allow (Results 1 – 25 of 1530) sorted by relevance

12345678910>>...62

/ohos5.0/base/security/selinux_adapter/sepolicy/ohos_policy/developtools/profiler/system/
H A Dhiprofiler_plugins.te14 allow hiprofiler_plugins data_file:dir search;
29 allow hiprofiler_plugins appspawn:file read;
30 allow hiprofiler_plugins hdcd:fd use;
34 allow hiprofiler_plugins kernel:file read;
43 allow hiprofiler_plugins samgr:file read;
51 allow hiprofiler_plugins tmpfs:file write;
52 allow hiprofiler_plugins udevd:file read;
122 allow hiprofiler_plugins init:dir search;
188 allow hiprofiler_plugins hdcd:file read;
247 allow hiprofiler_plugins sh:fd use;
[all …]
H A Dhiprofiler_cmd.te15 allow hiprofiler_cmd hdcd:fd use;
25 allow hiprofiler_cmd data_local:dir search;
27 allow hiprofiler_cmd rootfs:file { read };
48 allow hiprofiler_cmd hw_sc_param:file map;
90 allow hiprofiler_cmd rootfs:file getattr;
94 allow hiprofiler_cmd init:file read;
95 allow hiprofiler_cmd kernel:file read;
103 allow hiprofiler_cmd hiprofilerd:fd use;
111 allow hiprofiler_cmd hilogd:file read;
142 allow hiprofiler_cmd sh:fd use;
[all …]
H A Dhiprofilerd.te16 allow hiprofilerd hdcd:fd use;
18 allow hiprofilerd hdcd:fifo_file write;
23 allow hiprofilerd data_file:dir search;
32 allow hiprofilerd data_local:dir search;
45 allow hiprofilerd init_param:file read;
62 allow hiprofilerd hw_sc_param:file map;
65 allow hiprofilerd net_param:file map;
78 allow hiprofilerd init_param:file map;
96 allow hiprofilerd rootfs:file read;
104 allow hiprofilerd sh:fd use;
[all …]
H A Dnative_daemon.te15 allow native_daemon self:capability setgid;
19 allow native_daemon sh:fd use;
20 allow native_daemon sh:file read;
29 allow native_daemon data_file:dir search;
30 allow native_daemon data_local:dir search;
35 allow native_daemon hdcd:fd use;
39 allow native_daemon hiprofilerd:fd use;
42 allow native_daemon rootfs:file read;
45 allow native_daemon hiview:dir search;
58 allow domain native_daemon:fd use;
[all …]
/ohos5.0/base/security/selinux_adapter/sepolicy/ohos_policy/hiviewdfx/hidumper/system/
H A Dhidumper_service.te15 allow $1 hidumper_service:fd use;
16 allow $1 hidumper_service:fifo_file write;
20 allow hidumper_service sh:fd { use };
28 allow hidumper_service appspawn:lnk_file read;
36 allow hidumper_service data_misc:dir search;
43 allow hidumper_service dev_file:dir getattr;
57 allow hidumper_service hdcd:fd use;
59 allow hidumper_service hdcd:lnk_file read;
64 allow hidumper_service hidumper:binder call;
68 allow hidumper_service hidumper:fd use;
[all …]
/ohos5.0/base/security/selinux_adapter/sepolicy/ohos_policy/startup/appspawn/system/
H A Dcjappspawn.te16 allow init cjappspawn_exec:file { execute };
19 allow foundation cjappspawn:fd { use };
22 allow debug_hap cjappspawn:fd { use };
25 allow hap_domain cjappspawn:fd use;
37 allow cjappspawn kernel:fd { use };
51 allow cjappspawn sys_file:dir { search };
87 allow cjappspawn rootfs:dir { mounton };
108 allow cjappspawn kernel:key { search };
118 allow cjappspawn cgroup:dir { search };
268 allow cjappspawn samgr:binder call;
[all …]
/ohos5.0/base/security/selinux_adapter/sepolicy/ohos_policy/developtools/hiperf/system/
H A Dhiperf.te24 allow hiperf hdcd:fd use;
97 allow hiperf data_file:dir search;
100 allow hiperf data_local:dir search;
103 allow hiperf rootfs:file read;
111 allow hiperf hiprofilerd:fd use;
135 allow hiperf hdcd:process signull;
137 allow hiperf init:process signull;
141 allow hiperf rootfs:dir read;
189 allow hiperf sh:fd use;
221 allow hiperf dev_file:dir getattr;
[all …]
/ohos5.0/base/security/selinux_adapter/sepolicy/base/te/
H A Dfoundation.te31 allow foundation data_system_ce:file { unlink };
35 allow foundation dev_dri_file:dir { search };
39 allow foundation dhardware:binder { call };
48 allow foundation hiview:binder { call };
58 allow foundation installs:binder { call };
59 allow foundation locationhub:binder { call };
60 allow foundation multimodalinput:fd { use };
64 allow foundation normal_hap_attr:fd { use };
104 allow foundation sensors:binder { call };
111 allow foundation sysfs_rtc:dir { open read };
[all …]
H A Dsystem_basic_hap.te16 allow system_basic_hap_attr bootanimation:fd { use };
40 allow system_basic_hap_attr allocator_host:fd { use };
46 allow system_basic_hap_attr hmdfs:dir { search };
47 allow system_basic_hap_attr huks_service:binder { call };
51 allow system_basic_hap_attr init_param:file { map open };
70 allow system_basic_hap_attr proc_file:file { open read };
105 allow system_basic_hap_attr sys_file:dir { open read };
106 allow system_basic_hap_attr sys_file:file { open read };
124 allow system_basic_hap_attr tracefs:dir { search };
127 allow system_basic_hap_attr ui_service:fd { use };
[all …]
H A Dnormal_hap.te37 allow normal_hap_attr dev_file:sock_file { write };
40 allow normal_hap_attr dev_unix_socket:dir { search };
42 allow normal_hap_attr allocator_host:binder { call };
46 allow normal_hap_attr faultloggerd:fd { use };
53 allow normal_hap_attr huks_service:binder { call };
60 allow normal_hap_attr media_service:fd { use };
72 allow normal_hap_attr node:tcp_socket { node_bind };
73 allow normal_hap_attr nwebspawn:fifo_file { write };
111 allow normal_hap_attr sysfs_rtc:dir { open read };
120 allow normal_hap_attr tracefs:dir { search };
[all …]
H A Dudevd.te21 allow udevd const_param:file { map open read };
26 allow udevd data_file:file { ioctl read };
31 allow udevd debug_param:file { map open read };
33 allow udevd dev_at_file:chr_file { getattr };
36 allow udevd dev_bus:dir { search };
38 allow udevd dev_bus_usb_file:dir { search };
45 allow udevd dev_dma_heap_file:dir { search };
82 allow udevd dev_unix_socket:dir { search };
86 allow udevd dev_v_file:lnk_file { create };
117 allow udevd system_etc_file:dir { watch };
[all …]
H A Dsystem_core_hap.te29 allow system_core_hap_attr data_user_file:file { write };
34 allow system_core_hap_attr dev_dri_file:dir { search };
39 allow system_core_hap_attr allocator_host:fd { use };
41 allow system_core_hap_attr faultloggerd:fd { use };
47 allow system_core_hap_attr hmdfs:file { read write };
48 allow system_core_hap_attr huks_service:binder { call };
55 allow system_core_hap_attr locationhub:binder { call };
62 allow system_core_hap_attr normal_hap_attr:fd { use };
68 allow system_core_hap_attr powermgr:binder { call };
101 allow system_core_hap_attr sys_file:dir { open read };
[all …]
/ohos5.0/base/security/selinux_adapter/sepolicy/ohos_policy/distributeddatamgr/distributeddatamgr/system/
H A Ddistributeddata.te15 allow distributeddata accountmgr:binder { call };
16 allow distributeddata accountmgr:dir { search };
28 allow distributeddata data_file:dir { search };
47 allow distributeddata d-bms:dir { search };
53 allow distributeddata hdcd:dir { search };
54 allow distributeddata hdcd:fd { use };
55 allow distributeddata hdcd:file { open read };
67 allow distributeddata hmdfs:file { getattr };
83 allow distributeddata sensors:binder { call };
192 allow distributeddata sh:dir { search };
[all …]
/ohos5.0/base/security/selinux_adapter/sepolicy/ohos_policy/startup/init/system/
H A Dparam_watcher.te20 allow param_watcher accountmgr:binder { call };
37 allow param_watcher d-bms:binder { call };
38 allow param_watcher dcamera:binder { call };
50 allow param_watcher dscreen:binder { call };
52 allow param_watcher edm_sa:binder { call };
54 allow param_watcher powermgr:binder { call };
57 allow param_watcher hiview:binder { call };
70 allow param_watcher msdp_sa:binder { call };
83 allow param_watcher pinauth:binder { call };
102 allow param_watcher tracefs:dir { search };
[all …]
H A Dueventd.te17 allow ueventd musl_param:file { read };
35 allow ueventd dev_bbox:chr_file { relabelto };
56 allow ueventd dev_full:chr_file { relabelto };
78 allow ueventd dev_xpm:chr_file { relabelto };
81 allow ueventd dev_i2c:chr_file { relabelto };
139 allow ueventd sys_file:dir { open read };
140 allow ueventd sys_file:file { open write };
151 allow ueventd sysfs_leds:dir { open read };
152 allow ueventd sysfs_net:dir { open read };
153 allow ueventd sysfs_net:file { open write };
[all …]
H A Dinit.te21 allow init data_ethernet:dir { getattr };
22 allow init data_log:file { getattr };
128 allow init sh:dir { search };
152 allow init cgroup:file { write };
157 allow init configfs:file { write };
252 allow init debugfs:dir { mounton };
320 allow init powermgr:dir { search };
326 allow init hdcd:file { read open };
327 allow init hdcd:dir { search };
394 allow init rootfs:dir { mounton };
[all …]
/ohos5.0/base/security/selinux_adapter/sepolicy/ohos_policy/bundlemanager/bundle_framework/system/
H A Dfoundation.te17 #allow init samain_exec:file execute_no_trans;
24 #allow foundation hdf_devmgr:binder call;
25 #allow appspawn foundation:binder call;
39 allow foundation multimodalinput:binder call;
51 allow foundation configfs:dir { search };
52 allow foundation configfs:file { open write };
73 allow foundation hiview:binder { transfer };
77 allow foundation msdp_sa:binder { call };
85 allow foundation power_host:binder { call };
106 allow foundation sensors:binder { call };
[all …]
H A Dbm.te16 allow bm samgr:binder { call };
17 allow samgr bm:dir { search };
18 allow samgr bm:file { open read };
22 allow hiview bm:dir { search };
29 allow bm foundation:fd { use };
31 allow bm hdcd:fd { use };
32 allow bm sh:fd { use };
72 allow bm samgr:binder { call };
73 allow samgr bm:dir { search };
87 allow bm hdcd:fd { use };
[all …]
/ohos5.0/base/security/selinux_adapter/sepolicy/ohos_policy/ability/ability_runtime/system/
H A Dfoundation.te14 allow foundation accessibility:binder { call };
16 allow foundation accountmgr:binder { call };
18 allow foundation appspawn:fd { use };
25 allow foundation data_file:dir { search };
38 allow foundation edm_sa:binder { call };
40 allow foundation hdcd:binder { transfer };
43 allow foundation hiview:binder { transfer };
52 allow foundation render_service:fd { use };
109 allow foundation vfat:file { read write };
112 allow foundation accountmgr:fd { use };
[all …]
H A Daa.te32 allow aa foundation:fd { use };
33 allow aa hap_domain:fd { use };
35 allow aa hdcd:fd { use };
60 allow aa samgr:binder { call };
64 allow aa sh:fd { use };
80 allow hidumper aa:fd { use };
92 allow samgr aa:dir { search };
114 allow aa hdcd:fd { use };
124 allow aa samgr:dir { search };
128 allow aa sh:fd { use };
[all …]
/ohos5.0/base/security/selinux_adapter/sepolicy/ohos_policy/telephony/telephony_sa/system/
H A Dtelephony_sa.te15 allow telephony_sa accountmgr:binder call;
16 allow telephony_sa chip_prod_file:dir search;
17 allow telephony_sa data_file:dir search;
18 allow telephony_sa data_app_el1_file:dir search;
20 allow telephony_sa data_app_file:dir search;
23 allow telephony_sa data_service_file:dir search;
26 allow telephony_sa distributeddata:fd use;
36 allow telephony_sa normal_hap_attr:fd use;
86 allow telephony_sa sys_prod_file:dir search;
87 allow telephony_sa time_service:binder call;
[all …]
/ohos5.0/base/security/selinux_adapter/sepolicy/whitelist/
H A Dsh.baseline22 (allow sh data_log (dir (search)))
31 (allow sh dev_file (dir (search)))
40 (allow sh domain (file (read open)))
41 (allow sh domain (process (getattr)))
45 (allow sh hdcd (fd (use)))
74 (allow sh rootfs (dir (search)))
75 (allow sh rootfs (lnk_file (read)))
77 (allow sh self (fd (use)))
87 (allow sh sys_file (dir (search)))
95 (allow sh sysfs_net (dir (search)))
[all …]
/ohos5.0/base/security/selinux_adapter/sepolicy/ohos_policy/developtools/smartperf/system/
H A DSP_daemon.te16 allow SP_daemon data_file:dir { search };
17 allow SP_daemon data_local:dir { search };
25 allow SP_daemon hdcd:fd { use };
27 allow SP_daemon sh:fd { use };
46 allow SP_daemon samgr:binder { call };
90 allow SP_daemon sh:dir { search };
91 allow SP_daemon sh:file { read };
93 allow SP_daemon hdcd:fd { use };
115 allow SP_daemon hiprofilerd:fd { use };
141 allow SP_daemon aa_exec:file { map };
[all …]
/ohos5.0/base/security/selinux_adapter/sepolicy/ohos_policy/communication/netmanager/system/
H A Dnetmanager.te15 allow netmanager fs_bpf:dir { search };
16 allow netmanager fs_bpf:file { read };
17 allow netmanager netsysnative:bpf { map_read };
18 allow netmanager data_data_file:dir { search };
27 allow netmanager data_system:file { ioctl };
32 allow netmanager musl_param:file { read };
69 allow init configfs:dir { rmdir };
74 allow netsysnative netmanager:fd { use };
87 allow netmanager sh:binder { call };
96 allow netmanager distributeddata:fd use;
[all …]
/ohos5.0/base/security/selinux_adapter/sepolicy/ohos_policy/drivers/peripheral/usb/vendor/
H A Dusb_host.te25 allow usb_host musl_param:file { map };
26 allow usb_host musl_param:file { open };
27 allow usb_host musl_param:file { read };
31 allow usb_host tracefs:dir { search };
80 allow usb_host console:fd { use };
81 allow usb_host sh:binder { call };
83 allow usb_host data_file:dir { search };
89 allow usb_host dev_bus:dir { search };
100 allow usb_host faultloggerd:fd { use };
113 allow usb_host hiview:binder { call };
[all …]

12345678910>>...62