diff --git a/aoc/sepolicy/aocd.te b/aoc/sepolicy/aocd.te index 69b0af0..b2bfd13 100644 --- a/aoc/sepolicy/aocd.te +++ b/aoc/sepolicy/aocd.te @@ -10,6 +10,7 @@ r_dir_file(aocd, persist_aoc_file); # sysfs operations allow aocd sysfs_aoc:dir search; allow aocd sysfs_aoc_firmware:file w_file_perms; +allow aocd sysfs_aoc_notifytimeout:file r_file_perms; # dev operations allow aocd aoc_device:chr_file rw_file_perms; @@ -19,3 +20,4 @@ allow aocd device:dir r_dir_perms; # set properties set_prop(aocd, vendor_aoc_prop) +set_prop(aocd, vendor_timeout_aoc_prop) \ No newline at end of file diff --git a/aoc/sepolicy/file.te b/aoc/sepolicy/file.te index 602c5fe..0b853db 100644 --- a/aoc/sepolicy/file.te +++ b/aoc/sepolicy/file.te @@ -4,6 +4,7 @@ type sysfs_aoc_boottime, sysfs_type, fs_type; type sysfs_aoc_firmware, sysfs_type, fs_type; type sysfs_aoc, sysfs_type, fs_type; type sysfs_aoc_reset, sysfs_type, fs_type; +type sysfs_aoc_notifytimeout, sysfs_type, fs_type; # persist type persist_aoc_file, file_type, vendor_persist_type; diff --git a/aoc/sepolicy/property.te b/aoc/sepolicy/property.te index e6f9ddb..c2f5695 100644 --- a/aoc/sepolicy/property.te +++ b/aoc/sepolicy/property.te @@ -1,2 +1,3 @@ # AoC vendor_internal_prop(vendor_aoc_prop) +vendor_internal_prop(vendor_timeout_aoc_prop) \ No newline at end of file diff --git a/aoc/sepolicy/property_contexts b/aoc/sepolicy/property_contexts index 0838873..3c2acb6 100644 --- a/aoc/sepolicy/property_contexts +++ b/aoc/sepolicy/property_contexts @@ -1,2 +1,3 @@ # AoC vendor.aoc.firmware.version u:object_r:vendor_aoc_prop:s0 +persist.vendor.aoc.status_request_timed_out u:object_r:vendor_timeout_aoc_prop:s0 \ No newline at end of file