Skip to content

[Q-COMPAT] Change toybox run context, update selinux xattr#613

Merged
jerpelea merged 2 commits intosonyxperiadev:masterfrom
ix5:toolbox-context
Jul 29, 2019
Merged

[Q-COMPAT] Change toybox run context, update selinux xattr#613
jerpelea merged 2 commits intosonyxperiadev:masterfrom
ix5:toolbox-context

Conversation

@ix5
Copy link
Copy Markdown
Contributor

@ix5 ix5 commented May 24, 2019

init: Change toybox SELinux run context

Entering the vendor_init context from other entrypoints is disallowed on Android Q, see:
https://android.googlesource.com/platform/system/sepolicy/+/44328c061d67636d4d8047ac69c4e778467eb4e8/public/vendor_init.te#263

init: Wipe updated xattr from /persist/

restorecon now looks for the security.sehash xattr.

See https://android-review.googlesource.com/c/platform/external/selinux/+/916356


See sonyxperiadev/device-sony-sepolicy#526 for updated sepolicy

ix5 added 2 commits May 25, 2019 00:27
Entering the vendor_init context from other entrypoints is disallowed on
Android Q, see:
https://android.googlesource.com/platform/system/sepolicy/+/44328c061d67636d4d8047ac69c4e778467eb4e8/public/vendor_init.te#263

Needs new sepolicy for vendor_toolbox
@ix5 ix5 changed the title [DONOTMERGE] [Q-COMPAT] Change toybox run context [DONOTMERGE] [Q-COMPAT] Change toybox run context, update selinux xattr May 24, 2019
@ix5 ix5 changed the title [DONOTMERGE] [Q-COMPAT] Change toybox run context, update selinux xattr [Q-COMPAT] Change toybox run context, update selinux xattr Jul 29, 2019
@ix5
Copy link
Copy Markdown
Contributor Author

ix5 commented Jul 29, 2019

Can be merged into Pie already.

@jerpelea jerpelea merged commit afc15bf into sonyxperiadev:master Jul 29, 2019
@ix5 ix5 deleted the toolbox-context branch July 29, 2019 21:25
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants