Sepolicy for light hal.
Bug: 32022100
Test: end to end
Change-Id: I5dd9b64c98a5c549fdaf9e47d5a92fa6963370c7
diff --git a/public/hal_light.te b/public/hal_light.te
new file mode 100644
index 0000000..cdb36bb
--- /dev/null
+++ b/public/hal_light.te
@@ -0,0 +1,9 @@
+# light subsystem
+type hal_light, domain;
+type hal_light_exec, exec_type, file_type;
+
+# hwbinder access
+hwbinder_use(hal_light)
+
+# call into system_server process (callbacks)
+binder_call(hal_light, system_server)
diff --git a/public/system_server.te b/public/system_server.te
index b59aa05..a728c15 100644
--- a/public/system_server.te
+++ b/public/system_server.te
@@ -148,6 +148,7 @@
# Perform Binder IPC.
binder_use(system_server)
binder_call(system_server, hal_boot)
+binder_call(system_server, hal_light)
binder_call(system_server, hal_vibrator)
binder_call(system_server, hal_vr)
binder_call(system_server, binderservicedomain)