Re: [android-porting] Strange AVC Denial

2016-07-13 Thread Stephen Smalley
On 07/13/2016 12:22 PM, Roman Mazur wrote: >>No, the denial is caused by the fact that the app is running with >>categories (c512,c768) and the file is not labeled with the same >>categories. You can allow this by adding the mlstrustedobject attribute >>to your type: > > Got it, thanks! > But

Re: [android-porting] Strange AVC Denial

2016-07-13 Thread Roman Mazur
..@gmail.com; android-porting > port...@googlegroups.com>; seandroid-l...@tycho.nsa.gov > > Subject: Re: [android-porting] Strange AVC Denial > > > > On 07/12/2016 11:57 AM, Roman Mazur wrote: > > > I'm working on a custom build based on Android 6.0.1 for Nexus 7.

Re: [android-porting] Strange AVC Denial

2016-07-12 Thread Stephen Smalley
On 07/12/2016 11:57 AM, Roman Mazur wrote: > I'm working on a custom build based on Android 6.0.1 for Nexus 7. This > custom build adds a special daemon that is started from init.rc and > exposes some API to applications. Particularly, one of available methods > creates a new file at