Remove access to unlabeled vsock_socket
The kernel fix (aosp/1645810) has been merged into Cuttlefish kernels
so it is safe to remove the related TODOs for Bug 130668487.
Bug: 130668487
Test: build and boot
Change-Id: I51d13d2639a8a21950b427d29d1541cf91c4f6e0
Merged-In: I51d13d2639a8a21950b427d29d1541cf91c4f6e0
diff --git a/shared/sepolicy/vendor/adbd.te b/shared/sepolicy/vendor/adbd.te
index 4ed653a..d932066 100644
--- a/shared/sepolicy/vendor/adbd.te
+++ b/shared/sepolicy/vendor/adbd.te
@@ -1,9 +1,2 @@
allow adbd self:{ socket vsock_socket } {create listen accept rw_socket_perms_no_ioctl};
-# TODO(b/130668487): Label the vsock sockets.
-allow adbd unlabeled:{socket vsock_socket} rw_socket_perms_no_ioctl;
allow adbd kernel:system module_request;
-
-recovery_only(`
-# TODO(b/130668487): Label the vsock sockets.
-allow su unlabeled:{ socket vsock_socket } rw_socket_perms_no_ioctl;
-')