From 74891faea9dd872bebc24ca9c1e770fc1d5f919c Mon Sep 17 00:00:00 2001 From: Steve Kondik Date: Wed, 5 Aug 2015 17:54:33 -0700 Subject: [PATCH] sepolicy: Allow recovery to set system properties * This is used by extremely critical things. Change-Id: Ie529851469408adac1e081fe4f6dc5daa9002933 --- sepolicy/recovery.te | 2 ++ 1 file changed, 2 insertions(+) diff --git a/sepolicy/recovery.te b/sepolicy/recovery.te index cf230f7e..870c5f84 100644 --- a/sepolicy/recovery.te +++ b/sepolicy/recovery.te @@ -39,4 +39,6 @@ allow recovery system_data_file:file create_file_perms; allow recovery recovery_cache_file:dir create_dir_perms; allow recovery recovery_cache_file:file create_file_perms; +# set system properties for various things +allow recovery system_prop:property_service set; ')