blob: cf312165dd9afa74187b9350e878a5f60ef246d5 [file] [log] [blame]
The Android Open Source Project9066cfe2009-03-03 19:31:44 -08001<?xml version="1.0" encoding="utf-8"?>
2<!-- Copyright (C) 2008 The Android Open Source Project
3
4 Licensed under the Apache License, Version 2.0 (the "License");
5 you may not use this file except in compliance with the License.
6 You may obtain a copy of the License at
Chien-Yu Chen75cade02016-01-11 10:56:21 -08007
The Android Open Source Project9066cfe2009-03-03 19:31:44 -08008 http://www.apache.org/licenses/LICENSE-2.0
Chien-Yu Chen75cade02016-01-11 10:56:21 -08009
The Android Open Source Project9066cfe2009-03-03 19:31:44 -080010 Unless required by applicable law or agreed to in writing, software
11 distributed under the License is distributed on an "AS IS" BASIS,
12 WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
13 See the License for the specific language governing permissions and
14 limitations under the License.
15-->
16
17<!-- This file is used to define the mappings between lower-level system
18 user and group IDs and the higher-level permission names managed
19 by the platform.
20
21 Be VERY careful when editing this file! Mistakes made here can open
22 big security holes.
23-->
24<permissions>
25
26 <!-- ================================================================== -->
27 <!-- ================================================================== -->
28 <!-- ================================================================== -->
29
30 <!-- The following tags are associating low-level group IDs with
31 permission names. By specifying such a mapping, you are saying
32 that any application process granted the given permission will
33 also be running with the given group ID attached to its process,
34 so it can perform any filesystem (read, write, execute) operations
35 allowed for that group. -->
36
37 <permission name="android.permission.BLUETOOTH_ADMIN" >
38 <group gid="net_bt_admin" />
39 </permission>
40
41 <permission name="android.permission.BLUETOOTH" >
42 <group gid="net_bt" />
43 </permission>
44
Matthew Xiefca9d632012-10-04 12:25:28 -070045 <permission name="android.permission.BLUETOOTH_STACK" >
Ajay Panicker35cb6982016-09-20 11:18:14 -070046 <group gid="bluetooth" />
Pavlin Radoslavov70166252015-11-23 17:13:25 -080047 <group gid="wakelock" />
Siarhei Vishniakou9e089562017-05-08 15:42:14 -070048 <group gid="uhid" />
Matthew Xiefca9d632012-10-04 12:25:28 -070049 </permission>
50
fredc0f420372012-04-12 00:02:00 -070051 <permission name="android.permission.NET_TUNNELING" >
52 <group gid="vpn" />
53 </permission>
54
The Android Open Source Project9066cfe2009-03-03 19:31:44 -080055 <permission name="android.permission.INTERNET" >
56 <group gid="inet" />
57 </permission>
58
The Android Open Source Project9066cfe2009-03-03 19:31:44 -080059 <permission name="android.permission.READ_LOGS" >
60 <group gid="log" />
61 </permission>
62
Zim7a5050b2020-01-24 17:34:51 +000063 <permission name="android.permission.MANAGE_EXTERNAL_STORAGE" >
64 <group gid="external_storage" />
65 </permission>
66
Mike Lockwood10bc1112011-01-10 08:24:08 -050067 <permission name="android.permission.ACCESS_MTP" >
68 <group gid="mtp" />
69 </permission>
70
Ramesh Sudini0e7b5a02011-03-28 09:18:31 -050071 <permission name="android.permission.NET_ADMIN" >
72 <group gid="net_admin" />
73 </permission>
74
Hungming Chen14858ac2020-02-05 15:10:42 +080075 <permission name="android.permission.MAINLINE_NETWORK_STACK" >
76 <group gid="net_admin" />
77 <group gid="net_raw" />
78 </permission>
79
The Android Open Source Project9066cfe2009-03-03 19:31:44 -080080 <!-- The group that /cache belongs to, linked to the permission
81 set on the applications that can access /cache -->
82 <permission name="android.permission.ACCESS_CACHE_FILESYSTEM" >
83 <group gid="cache" />
84 </permission>
85
86 <!-- RW permissions to any system resources owned by group 'diag'.
87 This is for carrier and manufacture diagnostics tools that must be
88 installable from the framework. Be careful. -->
89 <permission name="android.permission.DIAGNOSTIC" >
90 <group gid="input" />
91 <group gid="diag" />
92 </permission>
93
Jeff Sharkey9e18fd12011-05-02 17:51:29 -070094 <!-- Group that can read detailed network usage statistics -->
95 <permission name="android.permission.READ_NETWORK_USAGE_HISTORY">
96 <group gid="net_bw_stats" />
97 </permission>
98
99 <!-- Group that can modify how network statistics are accounted -->
Jeff Sharkey9f09e6a72017-06-26 11:24:47 -0600100 <permission name="android.permission.UPDATE_DEVICE_STATS">
Jeff Sharkey9e18fd12011-05-02 17:51:29 -0700101 <group gid="net_bw_acct" />
102 </permission>
103
Doug Zongkerb616f0c2013-01-29 09:05:21 -0800104 <permission name="android.permission.LOOP_RADIO" >
105 <group gid="loop_radio" />
106 </permission>
107
Jeff Sharkey270e1f42014-10-01 16:02:05 -0700108 <!-- Hotword training apps sometimes need a GID to talk with low-level
109 hardware; give them audio for now until full HAL support is added. -->
110 <permission name="android.permission.MANAGE_VOICE_KEYPHRASES">
111 <group gid="audio" />
112 </permission>
113
Tomasz Wasilczykdf776432017-07-21 14:07:09 -0700114 <permission name="android.permission.ACCESS_BROADCAST_RADIO" >
Andy Hunged0ea402015-10-30 14:11:46 -0700115 <!-- /dev/fm is gid media, not audio -->
Benson Huang981258e2014-09-23 10:57:40 +0800116 <group gid="media" />
117 </permission>
118
Jeff Sharkey4a539442018-01-05 17:09:52 -0700119 <permission name="android.permission.USE_RESERVED_DISK">
120 <group gid="reserved_disk" />
121 </permission>
122
Svet Ganove5313a82016-04-11 09:59:56 -0700123 <!-- These are permissions that were mapped to gids but we need
124 to keep them here until an upgrade from L to the current
125 version is to be supported. These permissions are built-in
126 and in L were not stored in packages.xml as a result if they
127 are not defined here while parsing packages.xml we would
128 ignore these permissions being granted to apps and not
129 propagate the granted state. From N we are storing the
130 built-in permissions in packages.xml as the saved storage
131 is negligible (one tag with the permission) compared to
132 the fragility as one can remove a built-in permission which
133 no longer needs to be mapped to gids and break grant propagation. -->
134 <permission name="android.permission.READ_EXTERNAL_STORAGE" />
135 <permission name="android.permission.WRITE_EXTERNAL_STORAGE" />
136
The Android Open Source Project9066cfe2009-03-03 19:31:44 -0800137 <!-- ================================================================== -->
138 <!-- ================================================================== -->
139 <!-- ================================================================== -->
140
141 <!-- The following tags are assigning high-level permissions to specific
142 user IDs. These are used to allow specific core system users to
143 perform the given operations with the higher-level framework. For
144 example, we give a wide variety of permissions to the shell user
145 since that is the user the adb shell runs under and developers and
146 others should have a fairly open environment in which to
147 interact with the system. -->
148
The Android Open Source Project9066cfe2009-03-03 19:31:44 -0800149 <assign-permission name="android.permission.MODIFY_AUDIO_SETTINGS" uid="media" />
The Android Open Source Project9066cfe2009-03-03 19:31:44 -0800150 <assign-permission name="android.permission.ACCESS_SURFACE_FLINGER" uid="media" />
Eric Laurent6dbdc402011-07-22 09:04:31 -0700151 <assign-permission name="android.permission.WAKE_LOCK" uid="media" />
Marco Nelissend983ba52013-10-03 08:49:36 -0700152 <assign-permission name="android.permission.UPDATE_DEVICE_STATS" uid="media" />
Eino-Ville Talvala788717c2013-02-15 18:30:15 -0800153 <assign-permission name="android.permission.UPDATE_APP_OPS_STATS" uid="media" />
Chong Zhang8e4f4b32015-12-02 12:18:52 -0800154 <assign-permission name="android.permission.GET_PROCESS_STATE_AND_OOM_SCORE" uid="media" />
Chenbo Fenge5d6f0f2019-05-22 15:28:49 -0700155 <assign-permission name="android.permission.INTERNET" uid="media" />
156
157 <assign-permission name="android.permission.INTERNET" uid="shell" />
The Android Open Source Project9066cfe2009-03-03 19:31:44 -0800158
Andy Hunged0ea402015-10-30 14:11:46 -0700159 <assign-permission name="android.permission.MODIFY_AUDIO_SETTINGS" uid="audioserver" />
160 <assign-permission name="android.permission.ACCESS_SURFACE_FLINGER" uid="audioserver" />
161 <assign-permission name="android.permission.WAKE_LOCK" uid="audioserver" />
162 <assign-permission name="android.permission.UPDATE_DEVICE_STATS" uid="audioserver" />
163 <assign-permission name="android.permission.UPDATE_APP_OPS_STATS" uid="audioserver" />
Svet Ganov14ab9672017-11-22 18:49:32 -0800164 <assign-permission name="android.permission.PACKAGE_USAGE_STATS" uid="audioserver" />
Andy Hunged0ea402015-10-30 14:11:46 -0700165
Chien-Yu Chen75cade02016-01-11 10:56:21 -0800166 <assign-permission name="android.permission.MODIFY_AUDIO_SETTINGS" uid="cameraserver" />
167 <assign-permission name="android.permission.ACCESS_SURFACE_FLINGER" uid="cameraserver" />
168 <assign-permission name="android.permission.WAKE_LOCK" uid="cameraserver" />
169 <assign-permission name="android.permission.UPDATE_DEVICE_STATS" uid="cameraserver" />
170 <assign-permission name="android.permission.UPDATE_APP_OPS_STATS" uid="cameraserver" />
Emilian Peevbd885102017-02-01 16:07:31 +0000171 <assign-permission name="android.permission.GET_PROCESS_STATE_AND_OOM_SCORE" uid="cameraserver" />
Svet Ganov82f09bc2018-01-12 22:08:40 -0800172 <assign-permission name="android.permission.PACKAGE_USAGE_STATS" uid="cameraserver" />
Svetoslav Ganov2d20fb42018-02-08 15:52:10 -0800173 <assign-permission name="android.permission.WATCH_APPOPS" uid="cameraserver" />
Yin-Chia Yeh51d85162019-08-06 15:31:39 -0700174 <assign-permission name="android.permission.MANAGE_APP_OPS_MODES" uid="cameraserver" />
Chien-Yu Chen75cade02016-01-11 10:56:21 -0800175
Mathias Agopian627e7b52009-05-21 19:21:59 -0700176 <assign-permission name="android.permission.ACCESS_SURFACE_FLINGER" uid="graphics" />
177
Yi Jin4bab3a12018-01-10 16:50:59 -0800178 <assign-permission name="android.permission.DUMP" uid="incidentd" />
179 <assign-permission name="android.permission.PACKAGE_USAGE_STATS" uid="incidentd" />
Yi Jinfae17732018-06-06 18:08:01 -0700180 <assign-permission name="android.permission.INTERACT_ACROSS_USERS" uid="incidentd" />
Joe Onoratoe21ab7e2018-12-18 15:00:25 -0800181 <assign-permission name="android.permission.REQUEST_INCIDENT_REPORT_APPROVAL" uid="incidentd" />
Joe Onorato8e566f32019-10-23 17:35:08 -0700182 <assign-permission name="android.permission.PEEK_DROPBOX_DATA" uid="incidentd" />
Yi Jin4bab3a12018-01-10 16:50:59 -0800183
Robert Quattlebaumdf41b3e2017-08-14 18:34:03 -0700184 <assign-permission name="android.permission.ACCESS_LOWPAN_STATE" uid="lowpan" />
185 <assign-permission name="android.permission.MANAGE_LOWPAN_INTERFACES" uid="lowpan" />
186
Yi Jin974e56f2018-01-22 10:48:04 -0800187 <assign-permission name="android.permission.DUMP" uid="statsd" />
188 <assign-permission name="android.permission.PACKAGE_USAGE_STATS" uid="statsd" />
Yao Chen0f217102018-01-09 10:33:15 -0800189 <assign-permission name="android.permission.STATSCOMPANION" uid="statsd" />
Jeff Sharkey6b649252018-04-16 09:50:22 -0600190 <assign-permission name="android.permission.UPDATE_APP_OPS_STATS" uid="statsd" />
Yao Chen0f217102018-01-09 10:33:15 -0800191
Tej Singh10458ec2020-03-17 11:04:02 -0700192 <assign-permission name="android.permission.REGISTER_STATS_PULL_ATOM" uid="gpu_service" />
193
Philip P. Moltmann3d6c31a2019-04-16 14:42:42 -0700194 <split-permission name="android.permission.ACCESS_FINE_LOCATION">
195 <new-permission name="android.permission.ACCESS_COARSE_LOCATION" />
196 </split-permission>
Zimuzocc2932f2018-10-29 16:04:41 +0000197 <split-permission name="android.permission.WRITE_EXTERNAL_STORAGE">
198 <new-permission name="android.permission.READ_EXTERNAL_STORAGE" />
199 </split-permission>
Hall Liu45066122020-04-07 15:37:44 -0700200 <split-permission name="android.permission.READ_PRIVILEGED_PHONE_STATE">
201 <new-permission name="android.permission.READ_PHONE_STATE" />
202 </split-permission>
Zimuzocc2932f2018-10-29 16:04:41 +0000203 <split-permission name="android.permission.READ_CONTACTS"
204 targetSdk="16">
205 <new-permission name="android.permission.READ_CALL_LOG" />
206 </split-permission>
207 <split-permission name="android.permission.WRITE_CONTACTS"
208 targetSdk="16">
209 <new-permission name="android.permission.WRITE_CALL_LOG" />
210 </split-permission>
211 <split-permission name="android.permission.ACCESS_FINE_LOCATION"
Philip P. Moltmann41b31202019-05-16 12:16:48 -0700212 targetSdk="29">
Zimuzocc2932f2018-10-29 16:04:41 +0000213 <new-permission name="android.permission.ACCESS_BACKGROUND_LOCATION" />
214 </split-permission>
215 <split-permission name="android.permission.ACCESS_COARSE_LOCATION"
Philip P. Moltmann41b31202019-05-16 12:16:48 -0700216 targetSdk="29">
Zimuzocc2932f2018-10-29 16:04:41 +0000217 <new-permission name="android.permission.ACCESS_BACKGROUND_LOCATION" />
218 </split-permission>
Philip P. Moltmann89b044f2019-09-13 15:12:34 -0700219 <split-permission name="android.permission.READ_EXTERNAL_STORAGE"
220 targetSdk="29">
221 <new-permission name="android.permission.ACCESS_MEDIA_LOCATION" />
222 </split-permission>
Zimuzocc2932f2018-10-29 16:04:41 +0000223
The Android Open Source Project9066cfe2009-03-03 19:31:44 -0800224 <!-- This is a list of all the libraries available for application
225 code to link against. -->
226
Paul Duffina3b69212018-01-25 09:58:32 +0000227 <library name="android.test.base"
Sundong Ahnb7540bf2018-11-08 19:06:45 +0900228 file="/system/framework/android.test.base.jar" />
Paul Duffin6ed04552017-07-07 12:12:06 +0100229 <library name="android.test.mock"
Sundong Ahnb7540bf2018-11-08 19:06:45 +0900230 file="/system/framework/android.test.mock.jar"
Ben Lin71c16d72018-12-06 18:34:51 -0800231 dependency="android.test.base" />
The Android Open Source Project9066cfe2009-03-03 19:31:44 -0800232 <library name="android.test.runner"
Sundong Ahnb7540bf2018-11-08 19:06:45 +0900233 file="/system/framework/android.test.runner.jar"
Ben Lin71c16d72018-12-06 18:34:51 -0800234 dependency="android.test.base:android.test.mock" />
Narayan Kamath1ed78fb2015-01-20 13:44:23 +0000235
Steven Morelandf36ad622018-09-04 13:20:22 -0700236 <!-- In BOOT_JARS historically, and now added to legacy applications. -->
237 <library name="android.hidl.base-V1.0-java"
238 file="/system/framework/android.hidl.base-V1.0-java.jar" />
239 <library name="android.hidl.manager-V1.0-java"
Ben Lin71c16d72018-12-06 18:34:51 -0800240 file="/system/framework/android.hidl.manager-V1.0-java.jar"
241 dependency="android.hidl.base-V1.0-java" />
Steven Morelandf36ad622018-09-04 13:20:22 -0700242
Dianne Hackbornbe7c50e2014-06-30 14:43:28 -0700243 <!-- These are the standard packages that are white-listed to always have internet
244 access while in power save mode, even if they aren't in the foreground. -->
Felipe Leme05515ae2016-05-31 17:50:39 -0700245 <allow-in-power-save package="com.android.providers.downloads" />
Dianne Hackbornbe7c50e2014-06-30 14:43:28 -0700246
Felipe Leme1d0fbed2016-04-27 17:11:37 -0700247 <!-- These are the standard packages that are white-listed to always have internet
248 access while in data mode, even if they aren't in the foreground. -->
249 <allow-in-data-usage-save package="com.android.providers.downloads" />
250
Dianne Hackborn3f13c542017-02-09 11:05:11 -0800251 <!-- This is a core platform component that needs to freely run in the background -->
Chen Xu1d4939f2020-05-14 10:52:21 -0700252 <allow-in-power-save package="com.android.cellbroadcastreceiver.module" />
Dianne Hackborn3f13c542017-02-09 11:05:11 -0800253 <allow-in-power-save package="com.android.cellbroadcastreceiver" />
Christopher Tate32830792017-02-10 11:23:43 -0800254 <allow-in-power-save package="com.android.shell" />
Dianne Hackborn3f13c542017-02-09 11:05:11 -0800255
Makoto Onukifb263322018-01-17 13:23:50 -0800256 <!-- Whitelist system providers -->
257 <allow-in-power-save-except-idle package="com.android.providers.calendar" />
258 <allow-in-power-save-except-idle package="com.android.providers.contacts" />
259
Luis Hector Chavezd2f1ca82018-08-15 07:17:03 -0700260 <!-- The PAC proxy process must have network access, otherwise no app will
261 be able to connect to the internet when such a proxy is in use, since
262 all outgoing connections originate from this app. -->
263 <allow-in-power-save-except-idle package="com.android.proxyhandler" />
264
Xiaohui Chen9c990c12015-11-23 12:03:08 -0800265 <!-- These are the packages that are white-listed to be able to run as system user -->
266 <system-user-whitelisted-app package="com.android.settings" />
267
Fyodor Kupolov7db5af12015-07-31 16:50:27 -0700268 <!-- These are the packages that shouldn't run as system user -->
269 <system-user-blacklisted-app package="com.android.wallpaper.livepicker" />
The Android Open Source Project9066cfe2009-03-03 19:31:44 -0800270</permissions>