Allow system access to overlay service am: de5db3ab02
am: ca7d90ca19

Change-Id: Ibe4770026852338dcfde327857ccffb1fc91a5a0
diff --git a/private/system_server.te b/private/system_server.te
index 6a11448..5ada67e 100644
--- a/private/system_server.te
+++ b/private/system_server.te
@@ -62,16 +62,13 @@
     net_raw
     sys_boot
     sys_nice
-    sys_resource
+    sys_ptrace
     sys_time
     sys_tty_config
 };
 
 wakelock_use(system_server)
 
-# Triggered by /proc/pid accesses, not allowed.
-dontaudit system_server self:capability sys_ptrace;
-
 # Trigger module auto-load.
 allow system_server kernel:system module_request;