allow hal_fingerprint_default input_device:chr_file rw_file_perms; allow hal_fingerprint_default input_device:dir r_dir_perms; allow hal_fingerprint_default mnt_vendor_file:dir search; allow hal_fingerprint_default persist_data_file:dir create_dir_perms; allow hal_fingerprint_default persist_data_file:file create_file_perms; allow hal_fingerprint_default self:netlink_kobject_uevent_socket { read create bind setopt }; allow hal_fingerprint_default sysfs_fp_name_path:dir r_dir_perms; allow hal_fingerprint_default sysfs_fp_name_path:file rw_file_perms; allow hal_fingerprint_default vndbinder_device:chr_file { ioctl read write getattr lock append map open watch watch_reads }; allow hal_fingerprint_default vendor_gf_data_file:dir create_dir_perms; allow hal_fingerprint_default vendor_gf_data_file:file create_file_perms; set_prop(hal_fingerprint_default, vendor_fingerprint_prop)