s82kd92l
V2EX  ›  Android

请问懂 android selinux 规则的大神吗?

  •  
  •   s82kd92l · Feb 5, 2023 · 12686 views
    This topic created in 1191 days ago, the information mentioned may be changed or developed.
    折腾 magiks 的时候有个操作被 selinux 挡住了, 但我又不想全局 permissive, 想用 magiskpolicy 加个允许规则,请问有大神知道怎么加吗?

    报错信息是:

    "avc: denied { read } for comm="kworker/u17:3" laddr=192.168.0.2 lport=42392 faddr=192.168.0.1 fport=10809 scontext=u:r:kernel:s0 tcontext=u:r:magisk:s0 tclass=tcp_socket permissive=1"

    我用 magiskpolicy "allow kernel magisk tcp_socket *"
    和 magiskpolicy "permissive kernel"两个命令都不起作用。
    3 replies    2023-02-10 18:06:08 +08:00
    FranzKafka95
        1
    FranzKafka95  
       Feb 5, 2023 via Android
    可以参考我之前的博客:https://coderfan.net/some-basic-analysis-of-selinux-in-android-system.html ,其实有工具可以帮你直接生成,试试看呢
    s82kd92l
        2
    s82kd92l  
    OP
       Feb 5, 2023
    @FranzKafka95 太感谢了!
    rev1si0n
        3
    rev1si0n  
       Feb 10, 2023
    你这条不是已经 permissive=1 了嘛,还允许干啥
    About   ·   Help   ·   Advertise   ·   Blog   ·   API   ·   FAQ   ·   Solana   ·   5640 Online   Highest 6679   ·     Select Language
    创意工作者们的社区
    World is powered by solitude
    VERSION: 3.9.8.5 · 39ms · UTC 08:37 · PVG 16:37 · LAX 01:37 · JFK 04:37
    ♥ Do have faith in what you're doing.