Make the sepolicy for gsid cleaner
Test: compile pass
Change-Id: Id147035df1685134938b70f07599e6cecbdbb6f4
diff --git a/private/gsid.te b/private/gsid.te
index daff5c6..5d7b043 100644
--- a/private/gsid.te
+++ b/private/gsid.te
@@ -111,8 +111,12 @@
allow gsid metadata_file:dir { search getattr };
allow gsid {
gsi_metadata_file
+}:dir create_dir_perms;
+
+allow gsid {
ota_metadata_file
}:dir rw_dir_perms;
+
allow gsid {
gsi_metadata_file
ota_metadata_file
@@ -126,7 +130,6 @@
gsi_data_file
ota_image_data_file
}:file create_file_perms;
-allow gsid gsi_metadata_file:dir create;
allowxperm gsid {
gsi_data_file
ota_image_data_file