Remove clatd's dac_override abilities.

These are no longer necessary after the clatd change to acquire
membership in AID_VPN when dropping root privileges.

Change-Id: I9955296fe79e6dcbaa12acad1f1438e11d3b06cf
diff --git a/clatd.te b/clatd.te
index b0b5d95..0371e14 100644
--- a/clatd.te
+++ b/clatd.te
@@ -17,9 +17,6 @@
 
 allow clatd self:capability { net_admin net_raw setuid setgid };
 
-# TODO: Run clatd in vpn group to avoid need for this on /dev/tun.
-allow clatd self:capability dac_override;
-
 allow clatd self:netlink_route_socket nlmsg_write;
 allow clatd self:{ packet_socket rawip_socket tun_socket } create_socket_perms;
 allow clatd tun_device:chr_file rw_file_perms;