Dear Nick Kralevich.

Hi. I'm developer in Korea, I'm in charge of the selinux ploject in korea,
the following denied arose about app_process.
avc: denied { call } for pid=2183
# comm="app_process" scontext=u:r:zygote:s0 tcontext=u:r:servicemanager:s0
# tclass=binder "

so I want to add allow rules,

allow zygote servicemanager:binder call;

But, I checked commit in aosp-branch. I have some question about below
commit.

https://android.googlesource.com/platform/external/sepolicy/+/a268f48a1fb552fa967cda539ceb2a9cedcb0de9%5E%21/

I don't understand commit message.

In 66f25cb1af951d2064467b3af9e68bd7bfe01484, auditallow entries were added
for some old zygote rules. They've never been triggered, so they're not
needed. Delete them.

Could you please explain more detail why you deleted 3 weeks ago.

Thanks.
_______________________________________________
Seandroid-list mailing list
[email protected]
To unsubscribe, send email to [email protected].
To get help, send an email containing "help" to 
[email protected].

Reply via email to