universal7904: sepolicy: Allow kernel to read sysfs_virtual nodes
`avc: denied { read } for name="hall_detect" dev="sysfs" ino=29566 scontext=u:r:kernel:s0 tcontext=u:object_r:sysfs_virtual:s0 tclass=file permissive=0`
Signed-off-by: SamarV-121 <samarvispute121@gmail.com>
Change-Id: I8fb01d8c4ce8b48fbf58a0688b04dc79664d2964
diff --git a/sepolicy/vendor/kernel.te b/sepolicy/vendor/kernel.te
index a144f38..29d0781 100644
--- a/sepolicy/vendor/kernel.te
+++ b/sepolicy/vendor/kernel.te
@@ -7,5 +7,6 @@
allow kernel device:dir create_dir_perms;
allow kernel self:capability { sys_rawio mknod };
-allow kernel sysfs_virtual:dir search;
allow kernel block_device:dir search;
+
+r_dir_file(kernel, sysfs_virtual)