A future early-boot daemon (on-device signing) needs to access /data/misc before fs-verity keys are locked. Therefore, move the restorecon of /data up a bit, to make sure the labels are correct. To be safe, only run it after init_user0, since that function is responsible for loading DE keys. Also move early boot keys and fs-verity key locking a bit later, since the on-device signing daemon needs to use both of these, but it also needs the restorecon to function correctly. Bug: 174740982 Test: manual Change-Id: I9b6e44d9b547d420e1c6ba01fb3d3accc0625e20 |
||
|---|---|---|
| .. | ||
| avb | ||
| etc | ||
| adb_debug.prop | ||
| Android.bp | ||
| Android.mk | ||
| asan.options | ||
| asan_extract.rc | ||
| asan_extract.sh | ||
| init-debug.rc | ||
| init.environ.rc.in | ||
| init.rc | ||
| init.usb.configfs.rc | ||
| init.usb.rc | ||
| init.zygote32.rc | ||
| init.zygote64.rc | ||
| init.zygote64_32.rc | ||
| OWNERS | ||
| ueventd.rc | ||