Merge "sepolicy_vndr: Add tee listener read permission to spu services Change-Id: Ib3ab8277d8c060aad59009991cab6284027694f0" into sepolicy.vndr.lnx.13.0.r1-rel
diff --git a/qva/vendor/common/file_contexts b/qva/vendor/common/file_contexts
index 69fddb1..f7e64b4 100644
--- a/qva/vendor/common/file_contexts
+++ b/qva/vendor/common/file_contexts
@@ -90,7 +90,6 @@
/vendor/bin/hw/android\.hardware\.keymaster@4\.1-strongbox-service-qti u:object_r:vendor_hal_keymaster_qti_exec:s0
/vendor/bin/hw/android\.hardware\.keymaster@4\.1-javacard.service u:object_r:hal_keymaster_default_exec:s0
/vendor/bin/init\.qti\.ese\.strongbox\.sh u:object_r:vendor_init-qti-ese-strongbox-sh_exec:s0
-/vendor/bin/hw/android\.hardware\.security\.keymint-service-spu-qti u:object_r:vendor_hal_keymint_spu_qti_exec:s0
/vendor/bin/hw/android\.hardware\.security\.keymint-service\.strongbox u:object_r:vendor_hal_keymint_strongbox_exec:s0
/vendor/bin/hw/android\.hardware\.security\.keymint-service\.strongbox-thales u:object_r:vendor_hal_keymint_strongbox_exec:s0
/(vendor|system/vendor)/bin/hw/android\.hardware\.weaver@1\.0-service u:object_r:vendor_hal_weaver_default_exec:s0
diff --git a/qva/vendor/kalama/file_contexts b/qva/vendor/kalama/file_contexts
old mode 100755
new mode 100644
index 3676482..edbdf67
--- a/qva/vendor/kalama/file_contexts
+++ b/qva/vendor/kalama/file_contexts
@@ -61,6 +61,7 @@
/(vendor|system/vendor)/bin/hw/android\.hardware\.biometrics\.face@1\.0-service u:object_r:vendor_biometricsface_exec:s0
+/vendor/bin/hw/android\.hardware\.security\.keymint-service-spu-qti u:object_r:vendor_hal_keymint_spu_qti_exec:s0
/data/vendor/face3d_dir(/.*)? u:object_r:vendor_biometricsface_data_file:s0