Sepolicy: Give perfprofd access to kernel notes
Simpleperf reads kernel notes.
Bug: 70275668
Test: m
Test: manual
Change-Id: I1a2403c959464586bd52f0398ece0f02e3980fc4
diff --git a/public/perfprofd.te b/public/perfprofd.te
index 6ef600b..4571969 100644
--- a/public/perfprofd.te
+++ b/public/perfprofd.te
@@ -33,6 +33,9 @@
# perfprofd inspects /sys/power/wake_unlock
wakelock_use(perfprofd);
+ # simpleperf reads kernel notes.
+ allow perfprofd sysfs_kernel_notes:file r_file_perms;
+
# simpleperf uses ioctl() to turn on kernel perf events measurements
allow perfprofd self:global_capability_class_set sys_admin;