Add SELinux policy for asec containers.
Creates 2 new types:
- asec_apk_file : files found under /mnt/asec
when the asec images are mounted
- asec_image_file : the actual encrypted apks under
/data/app-asec
Change-Id: I963472add1980ac068d3a6d36a24f27233022832
Signed-off-by: rpcraig <rpcraig@tycho.ncsc.mil>
diff --git a/file_contexts b/file_contexts
index 8876bfe..713da79 100644
--- a/file_contexts
+++ b/file_contexts
@@ -152,4 +152,5 @@
/sys/devices/platform/nfc-power/nfc_power -- u:object_r:sysfs_nfc_power_writable:s0
#############################
# asec containers
-/mnt/asec(/.*)? u:object_r:asec_data_file:s0
+/mnt/asec(/.*)? u:object_r:asec_apk_file:s0
+/data/app-asec(/.*)? u:object_r:asec_image_file:s0