Donate to e Foundation | Murena handsets with /e/OS | Own a part of Murena! Learn more

Commit 43defd97 authored by Martijn Coenen's avatar Martijn Coenen Committed by Gerrit Code Review
Browse files

Merge "Add some keystore boot levels."

parents 72ad5d29 e94b3663
Loading
Loading
Loading
Loading
+5 −0
Original line number Diff line number Diff line
@@ -630,6 +630,9 @@ on late-fs
    write /sys/kernel/tracing/instances/bootreceiver/events/error_report/error_report_end/enable 1

on post-fs-data
    # Boot level 30 - at this point daemons like apexd and odsign run
    setprop keystore.boot_level 30

    mark_post_data

    # Start checkpoint before we touch data
@@ -908,6 +911,8 @@ on post-fs-data
    # Lock the fs-verity keyring, so no more keys can be added
    exec -- /system/bin/fsverity_init --lock

    setprop keystore.boot_level 40

    # Allow apexd to snapshot and restore device encrypted apex data in the case
    # of a rollback. This should be done immediately after DE_user data keys
    # are loaded. APEXes should not access this data until this has been