system_server: replace sys_resource with sys_ptrace am: 3d8dde0e2e am: dddbd2f3ba
am: 5ee080531d
Change-Id: I530872c3d9a8ddf5a03353b27e75ea1043cd2ab2
diff --git a/system_server.te b/system_server.te
index 03a7ef3..db59b65 100644
--- a/system_server.te
+++ b/system_server.te
@@ -54,16 +54,13 @@
net_raw
sys_boot
sys_nice
- sys_resource
+ sys_ptrace
sys_time
sys_tty_config
};
wakelock_use(system_server)
-# Triggered by /proc/pid accesses, not allowed.
-dontaudit system_server self:capability sys_ptrace;
-
# Trigger module auto-load.
allow system_server kernel:system module_request;