diff --git a/selinux/my-gatekeeperd.pp b/selinux/my-gatekeeperd.pp new file mode 100644 index 0000000..bc64867 Binary files /dev/null and b/selinux/my-gatekeeperd.pp differ diff --git a/selinux/my-gatekeeperd.te b/selinux/my-gatekeeperd.te new file mode 100644 index 0000000..fc76fdf --- /dev/null +++ b/selinux/my-gatekeeperd.te @@ -0,0 +1,10 @@ + +module my-gatekeeperd 1.0; + +require { + type unconfined_service_t; + class binder call; +} + +#============= unconfined_service_t ============== +allow unconfined_service_t self:binder call; diff --git a/selinux/my-servicemanager.pp b/selinux/my-servicemanager.pp new file mode 100644 index 0000000..c825cd4 Binary files /dev/null and b/selinux/my-servicemanager.pp differ