Allow postinstall scripts to trigger F2FS GC am: f63fe72142
am: 8e5d258b6c
Change-Id: I77c272061cd1f6fc7cea8fcb816e54a8a996868c
diff --git a/public/postinstall.te b/public/postinstall.te
index 2ef68bd..bcea2dc 100644
--- a/public/postinstall.te
+++ b/public/postinstall.te
@@ -35,6 +35,10 @@
# Need to talk to the otadexopt service.
allow postinstall otadexopt_service:service_manager find;
+# Allow postinstall scripts to trigger f2fs garbage collection
+allow postinstall sysfs_fs_f2fs:file rw_file_perms;
+allow postinstall sysfs_fs_f2fs:dir r_dir_perms;
+
# No domain other than update_engine and recovery (via update_engine_sideload)
# should transition to postinstall, as it is only meant to run during the
# update.