system_server: replace sys_resource with sys_ptrace am: 3d8dde0e2e am: dddbd2f3ba am: 5ee080531d am: 6b3ef92103
am: ed21f85552
Change-Id: I629201783c38c41032960e633f2a9f53eeadf8b9
diff --git a/private/system_server.te b/private/system_server.te
index 6a11448..5ada67e 100644
--- a/private/system_server.te
+++ b/private/system_server.te
@@ -62,16 +62,13 @@
net_raw
sys_boot
sys_nice
- sys_resource
+ sys_ptrace
sys_time
sys_tty_config
};
wakelock_use(system_server)
-# Triggered by /proc/pid accesses, not allowed.
-dontaudit system_server self:capability sys_ptrace;
-
# Trigger module auto-load.
allow system_server kernel:system module_request;