system_server: replace sys_resource with sys_ptrace am: 3d8dde0e2e
am: dddbd2f3ba
Change-Id: I517d7bbd415e28d2ba7719f17c1ddcc7c28f20a0
diff --git a/system_server.te b/system_server.te
index 03a7ef3..db59b65 100644
--- a/system_server.te
+++ b/system_server.te
@@ -54,16 +54,13 @@
net_raw
sys_boot
sys_nice
- sys_resource
+ sys_ptrace
sys_time
sys_tty_config
};
wakelock_use(system_server)
-# Triggered by /proc/pid accesses, not allowed.
-dontaudit system_server self:capability sys_ptrace;
-
# Trigger module auto-load.
allow system_server kernel:system module_request;