Merge "Make ppp permissive or unconfined."
diff --git a/ppp.te b/ppp.te
index 1f61fdd..21838f1 100644
--- a/ppp.te
+++ b/ppp.te
@@ -1,6 +1,15 @@
 # Point to Point Protocol daemon
 type ppp, domain;
+permissive_or_unconfined(ppp)
 type ppp_device, dev_type;
 type ppp_exec, exec_type, file_type;
-unconfined_domain(ppp)
 domain_auto_trans(mtp, ppp_exec, ppp)
+
+allow ppp mtp:socket rw_socket_perms;
+allow ppp ppp_device:chr_file rw_file_perms;
+allow ppp self:capability net_admin;
+allow ppp self:udp_socket create_socket_perms;
+allow ppp system_file:file rx_file_perms;
+allow ppp vpn_data_file:dir w_dir_perms;
+allow ppp vpn_data_file:file create_file_perms;
+allow ppp mtp:fd use;