mirror of
https://github.com/topjohnwu/Magisk.git
synced 2025-01-12 20:33:36 +00:00
3b071116ac
- Generalize avtab node extraction and insertion - Add new supported rules: type_change, type_member - Update help message with official policy language
55 lines
1.9 KiB
C
55 lines
1.9 KiB
C
/* magiskpolicy.h - Public API for policy patching
|
|
*/
|
|
|
|
#ifndef _MAGISKPOLICY_H
|
|
#define _MAGISKPOLICY_H
|
|
|
|
#include <stdlib.h>
|
|
|
|
#define ALL NULL
|
|
|
|
// split policy paths
|
|
#define PLAT_POLICY_DIR "/system/etc/selinux/"
|
|
#define NONPLAT_POLICY_DIR "/vendor/etc/selinux/"
|
|
#define SPLIT_PLAT_CIL PLAT_POLICY_DIR "plat_sepolicy.cil"
|
|
#define SPLIT_PLAT_MAPPING PLAT_POLICY_DIR "mapping/%s.cil"
|
|
#define SPLIT_PRECOMPILE NONPLAT_POLICY_DIR "precompiled_sepolicy"
|
|
#define SPLIT_NONPLAT_VER NONPLAT_POLICY_DIR "plat_sepolicy_vers.txt"
|
|
|
|
#ifdef __cplusplus
|
|
extern "C" {
|
|
#endif
|
|
|
|
// policydb functions
|
|
int load_policydb(const char *filename);
|
|
int compile_split_cil();
|
|
int dump_policydb(const char *filename);
|
|
void destroy_policydb();
|
|
|
|
// Handy functions
|
|
int sepol_allow(const char *s, const char *t, const char *c, const char *p);
|
|
int sepol_deny(const char *s, const char *t, const char *c, const char *p);
|
|
int sepol_auditallow(const char *s, const char *t, const char *c, const char *p);
|
|
int sepol_auditdeny(const char *s, const char *t, const char *c, const char *p);
|
|
int sepol_typetrans(const char *s, const char *t, const char *c, const char *d);
|
|
int sepol_typechange(const char *s, const char *t, const char *c, const char *d);
|
|
int sepol_typemember(const char *s, const char *t, const char *c, const char *d);
|
|
int sepol_nametrans(const char *s, const char *t, const char *c, const char *d, const char *o);
|
|
int sepol_allowxperm(const char *s, const char *t, const char *c, const char *range);
|
|
int sepol_auditallowxperm(const char *s, const char *t, const char *c, const char *range);
|
|
int sepol_dontauditxperm(const char *s, const char *t, const char *c, const char *range);
|
|
int sepol_create(const char *s);
|
|
int sepol_permissive(const char *s);
|
|
int sepol_enforce(const char *s);
|
|
int sepol_attradd(const char *s, const char *a);
|
|
int sepol_exists(const char *source);
|
|
|
|
// Built in rules
|
|
void sepol_magisk_rules();
|
|
|
|
#ifdef __cplusplus
|
|
};
|
|
#endif
|
|
|
|
#endif
|