Bringup missing selinux policies into caf kernels device files
diff --git a/sepolicy/file_contexts b/sepolicy/file_contexts
index ed41c96..ef0aaac 100644
--- a/sepolicy/file_contexts
+++ b/sepolicy/file_contexts
@@ -4,6 +4,7 @@
 
 /data/cam_socket.*                                 u:object_r:camera_socket:s0
 
+/sys/devices/virtual/graphics/fb0/aco              u:object_r:display_sysfs:s0
 /sys/devices/virtual/graphics/fb0/cabc             u:object_r:display_sysfs:s0
 /sys/devices/virtual/graphics/fb0/color_enhance    u:object_r:display_sysfs:s0
 /sys/devices/virtual/graphics/fb0/sre              u:object_r:display_sysfs:s0
diff --git a/sepolicy/radio.te b/sepolicy/radio.te
new file mode 100644
index 0000000..5b1de64
--- /dev/null
+++ b/sepolicy/radio.te
@@ -0,0 +1,3 @@
+# Telecom app can disable tap-to-wake
+allow radio proc_touchpanel:file rw_file_perms;
+allow radio proc_touchpanel:dir { search };
diff --git a/sepolicy/vold.te b/sepolicy/vold.te
new file mode 100644
index 0000000..32c0464
--- /dev/null
+++ b/sepolicy/vold.te
@@ -0,0 +1 @@
+allow vold persist_file:dir r_file_perms;