blob: c4fe9d66c91f7847c5dfebf68c75def0321cf322 [file] [log] [blame]
Stephen Smalley704744a2014-09-03 11:07:03 -04001# goldfish-setup service: runs init.goldfish.sh script
2type goldfish_setup, domain;
3type goldfish_setup_exec, exec_type, file_type;
Stephen Smalley704744a2014-09-03 11:07:03 -04004
5init_daemon_domain(goldfish_setup)
6
7# Inherit open file to shell (interpreter) for script.
8allow goldfish_setup shell_exec:file read;
9
10# Run ifconfig, route commands to configure interfaces and routes.
11allow goldfish_setup system_file:file execute_no_trans;
12allow goldfish_setup self:capability { net_admin net_raw };
13allow goldfish_setup self:udp_socket create_socket_perms;
14
15# Set net.eth0.dns*, debug.sf.nobootanimation
William Robertscccc9012015-05-11 10:23:59 -070016set_prop(goldfish_setup, system_prop)
17set_prop(goldfish_setup, debug_prop)