Merge "More robust restorecon and additional debug info." into tm-dev
This commit is contained in:
committed by
Android (Google) Code Review
commit
8169e839ca
@@ -239,8 +239,12 @@ static jboolean setFileCon(JNIEnv *env, jobject, jstring pathStr, jstring contex
|
|||||||
char *tmp = const_cast<char *>(context.c_str());
|
char *tmp = const_cast<char *>(context.c_str());
|
||||||
int ret = setfilecon(path.c_str(), tmp);
|
int ret = setfilecon(path.c_str(), tmp);
|
||||||
|
|
||||||
ALOGV("setFileCon(%s, %s) => %d", path.c_str(), context.c_str(), ret);
|
if (ret == 0) {
|
||||||
return (ret == 0) ? true : false;
|
ALOGV("setFileCon(%s, %s) => %d", path.c_str(), context.c_str(), ret);
|
||||||
|
return true;
|
||||||
|
}
|
||||||
|
ALOGE("setFileCon(%s, %s) => %d, err: %s", path.c_str(), context.c_str(), ret, strerror(errno));
|
||||||
|
return false;
|
||||||
}
|
}
|
||||||
|
|
||||||
/*
|
/*
|
||||||
|
|||||||
@@ -1034,7 +1034,16 @@ public class PackageInstallerService extends IPackageInstaller.Stub implements
|
|||||||
}
|
}
|
||||||
|
|
||||||
if (!SELinux.restorecon(stageDir)) {
|
if (!SELinux.restorecon(stageDir)) {
|
||||||
throw new IOException("Failed to restorecon session dir: " + stageDir);
|
String path = stageDir.getCanonicalPath();
|
||||||
|
String ctx = SELinux.fileSelabelLookup(path);
|
||||||
|
boolean success = SELinux.setFileContext(path, ctx);
|
||||||
|
Slog.e(TAG,
|
||||||
|
"Failed to SELinux.restorecon session dir, path: [" + path + "], ctx: [" + ctx
|
||||||
|
+ "]. Retrying via SELinux.fileSelabelLookup/SELinux.setFileContext: "
|
||||||
|
+ (success ? "SUCCESS" : "FAILURE"));
|
||||||
|
if (!success) {
|
||||||
|
throw new IOException("Failed to restorecon session dir: " + stageDir);
|
||||||
|
}
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
|
|||||||
Reference in New Issue
Block a user