sepolicy: update some selinux related rules
1. set security context for /dev/ttyFIQ0 and /dev/ttyAMA1
2. allow init to have more permissions for configfs dir and lnk_file
Change-Id: I388c0447a0ca915944bffd8c70a048bc945226a9
Signed-off-by: Yongqin Liu <yongqin.liu@linaro.org>
diff --git a/sepolicy/file_contexts b/sepolicy/file_contexts
index e97b068..dc808fa 100644
--- a/sepolicy/file_contexts
+++ b/sepolicy/file_contexts
@@ -1,6 +1,8 @@
/dev/ttyAMA0 u:object_r:console_device:s0
/dev/ttyAMA3 u:object_r:console_device:s0
+/dev/ttyFIQ0 u:object_r:console_device:s0
/dev/mali u:object_r:gpu_device:s0
/dev/dri/card0 u:object_r:gpu_device:s0
/dev/hci_tty u:object_r:hci_attach_dev:s0
+/dev/ttyAMA1 u:object_r:hci_attach_dev:s0
/system/bin/uim u:object_r:hci_attach_exec:s0
diff --git a/sepolicy/init.te b/sepolicy/init.te
index cd0bcac..f14792a 100644
--- a/sepolicy/init.te
+++ b/sepolicy/init.te
@@ -1,4 +1,4 @@
# init.hikey.usb.rc writes to /config/* to set up USB
-allow init configfs:dir create_file_perms;
+allow init configfs:dir create_dir_perms;
allow init configfs:file write;
-allow init configfs:lnk_file create;
+allow init configfs:lnk_file { create unlink };