From 2c44e1bb934768ad36e00d1200f8d52d6aa43089 Mon Sep 17 00:00:00 2001 From: topjohnwu Date: Fri, 29 Oct 2021 03:37:14 -0700 Subject: [PATCH] Update rules again --- native/jni/magiskpolicy/rules.cpp | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/native/jni/magiskpolicy/rules.cpp b/native/jni/magiskpolicy/rules.cpp index e8126cfb9..1a6d406d8 100644 --- a/native/jni/magiskpolicy/rules.cpp +++ b/native/jni/magiskpolicy/rules.cpp @@ -39,6 +39,7 @@ void sepolicy::magisk_rules() { allow(ALL, SEPOL_FILE_TYPE, "fifo_file", ALL); allow(ALL, SEPOL_FILE_TYPE, "chr_file", ALL); allow(ALL, SEPOL_FILE_TYPE, "lnk_file", ALL); + allow(ALL, SEPOL_FILE_TYPE, "sock_file", ALL); if (new_rules) { // Make client type literally untrusted_app @@ -62,7 +63,6 @@ void sepolicy::magisk_rules() { allow(SEPOL_CLIENT_DOMAIN, type, "chr_file", "read"); allow(SEPOL_CLIENT_DOMAIN, type, "chr_file", "write"); allow(SEPOL_CLIENT_DOMAIN, type, "chr_file", "ioctl"); - allowxperm(SEPOL_CLIENT_DOMAIN, type, "chr_file", "0x5404"); } // Allow these processes to access MagiskSU