Add 2 new system properties for Quick Start
Test: Manually validated that GmsCore can access the properties, but not a test app.
Change-Id: I2fa520dc31b328738f9a5fd1bcfc6632b61ad912
Bug: 280330984
(cherry picked from commit c97b3a244f2a2d98c5e3a3e4dcab1507a3ca9d64)
diff --git a/private/compat/33.0/33.0.ignore.cil b/private/compat/33.0/33.0.ignore.cil
index d84d8ea..7a5ca9a 100644
--- a/private/compat/33.0/33.0.ignore.cil
+++ b/private/compat/33.0/33.0.ignore.cil
@@ -59,6 +59,7 @@
persist_sysui_builder_extras_prop
persist_sysui_ranking_update_prop
prng_seeder
+ quick_start_prop
recovery_usb_config_prop
remote_provisioning_service
rkpdapp
diff --git a/private/gmscore_app.te b/private/gmscore_app.te
index cd05a65..46b90c6 100644
--- a/private/gmscore_app.te
+++ b/private/gmscore_app.te
@@ -152,6 +152,11 @@
# Allow GMSCore to read RKP properties for the purpose of GTS testing.
get_prop(gmscore_app, remote_prov_prop)
+# Allow GmsCore to read Quick Start properties and prevent access from other
+# policies.
+get_prop(gmscore_app, quick_start_prop)
+neverallow { domain -init -dumpstate -vendor_init -gmscore_app } quick_start_prop:file no_rw_file_perms;
+
# Do not allow getting permission-protected network information from sysfs.
neverallow gmscore_app sysfs_net:file *;
diff --git a/private/property_contexts b/private/property_contexts
index 64e738f..c7c7f6a 100644
--- a/private/property_contexts
+++ b/private/property_contexts
@@ -1565,3 +1565,7 @@
# System UI notification properties
persist.sysui.notification.ranking_update_ashmem u:object_r:persist_sysui_ranking_update_prop:s0 exact bool
persist.sysui.notification.builder_extras_override u:object_r:persist_sysui_builder_extras_prop:s0 exact bool
+
+# Properties for Quick Start setup.
+ro.quick_start.oem_id u:object_r:quick_start_prop:s0 exact string
+ro.quick_start.device_id u:object_r:quick_start_prop:s0 exact string
diff --git a/public/property.te b/public/property.te
index c11264b..17a9845 100644
--- a/public/property.te
+++ b/public/property.te
@@ -169,6 +169,7 @@
system_vendor_config_prop(oem_unlock_prop)
system_vendor_config_prop(ota_build_prop)
system_vendor_config_prop(packagemanager_config_prop)
+system_vendor_config_prop(quick_start_prop)
system_vendor_config_prop(recovery_config_prop)
system_vendor_config_prop(recovery_usb_config_prop)
system_vendor_config_prop(sendbug_config_prop)