<?xml version="1.0" encoding="UTF-8" standalone="yes" ?>
<!DOCTYPE bugzilla SYSTEM "https://bugs.webkit.org/page.cgi?id=bugzilla.dtd">

<bugzilla version="5.0.4.1"
          urlbase="https://bugs.webkit.org/"
          
          maintainer="admin@webkit.org"
>

    <bug>
          <bug_id>197924</bug_id>
          
          <creation_ts>2019-05-15 13:28:35 -0700</creation_ts>
          <short_desc>Revise sandbox to allow IOKit properties needed by Metal and LaunchServices</short_desc>
          <delta_ts>2019-05-15 15:27:26 -0700</delta_ts>
          <reporter_accessible>1</reporter_accessible>
          <cclist_accessible>1</cclist_accessible>
          <classification_id>1</classification_id>
          <classification>Unclassified</classification>
          <product>WebKit</product>
          <component>WebKit Misc.</component>
          <version>WebKit Nightly Build</version>
          <rep_platform>Unspecified</rep_platform>
          <op_sys>Unspecified</op_sys>
          <bug_status>RESOLVED</bug_status>
          <resolution>FIXED</resolution>
          
          
          <bug_file_loc></bug_file_loc>
          <status_whiteboard></status_whiteboard>
          <keywords>InRadar</keywords>
          <priority>P2</priority>
          <bug_severity>Normal</bug_severity>
          <target_milestone>---</target_milestone>
          
          
          <everconfirmed>1</everconfirmed>
          <reporter name="Brent Fulgham">bfulgham</reporter>
          <assigned_to name="Brent Fulgham">bfulgham</assigned_to>
          <cc>achristensen</cc>
    
    <cc>bfulgham</cc>
    
    <cc>eric.carlson</cc>
    
    <cc>pvollan</cc>
    
    <cc>webkit-bug-importer</cc>
          

      

      

      

          <comment_sort_order>oldest_to_newest</comment_sort_order>  
          <long_desc isprivate="0" >
    <commentid>1536561</commentid>
    <comment_count>0</comment_count>
    <who name="Brent Fulgham">bfulgham</who>
    <bug_when>2019-05-15 13:28:35 -0700</bug_when>
    <thetext>Review of test logs have shown the following sandbox violations that could result in reduced performance or slower launch times:

  Sandbox: com.apple.WebKit() deny(1) iokit-get-properties od-server-name
  Sandbox: com.apple.WebKit() deny(1) iokit-get-properties image-path
  Sandbox: com.apple.WebKit() deny(1) iokit-get-properties filevault-image
  Sandbox: com.apple.WebKit() deny(1) iokit-get-properties ATY,FamilyName
  Sandbox: com.apple.WebKit() deny(1) iokit-get-properties ATY,DeviceName

We should allow these accesses.</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>1536563</commentid>
    <comment_count>1</comment_count>
    <who name="Radar WebKit Bug Importer">webkit-bug-importer</who>
    <bug_when>2019-05-15 13:29:17 -0700</bug_when>
    <thetext>&lt;rdar://problem/50823976&gt;</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>1536566</commentid>
    <comment_count>2</comment_count>
      <attachid>369988</attachid>
    <who name="Brent Fulgham">bfulgham</who>
    <bug_when>2019-05-15 13:30:36 -0700</bug_when>
    <thetext>Created attachment 369988
Patch</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>1536568</commentid>
    <comment_count>3</comment_count>
      <attachid>369988</attachid>
    <who name="Per Arne Vollan">pvollan</who>
    <bug_when>2019-05-15 13:40:10 -0700</bug_when>
    <thetext>Comment on attachment 369988
Patch

View in context: https://bugs.webkit.org/attachment.cgi?id=369988&amp;action=review

Looks good! R=me.

&gt; Source/WebKit/ChangeLog:5
&gt; +        Revise sandbox to allow IOKit properties needed by Metal and LaunchServices
&gt; +        https://bugs.webkit.org/show_bug.cgi?id=197924
&gt; +

Do we have a Radar?</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>1536622</commentid>
    <comment_count>4</comment_count>
    <who name="Brent Fulgham">bfulgham</who>
    <bug_when>2019-05-15 15:27:26 -0700</bug_when>
    <thetext>Committed r245360: &lt;https://trac.webkit.org/changeset/245360&gt;</thetext>
  </long_desc>
      
          <attachment
              isobsolete="0"
              ispatch="1"
              isprivate="0"
          >
            <attachid>369988</attachid>
            <date>2019-05-15 13:30:36 -0700</date>
            <delta_ts>2019-05-15 15:26:22 -0700</delta_ts>
            <desc>Patch</desc>
            <filename>bug-197924-20190515133035.patch</filename>
            <type>text/plain</type>
            <size>2664</size>
            <attacher name="Brent Fulgham">bfulgham</attacher>
            
              <data encoding="base64">U3VidmVyc2lvbiBSZXZpc2lvbjogMjQ1Mjg0CmRpZmYgLS1naXQgYS9Tb3VyY2UvV2ViS2l0L0No
YW5nZUxvZyBiL1NvdXJjZS9XZWJLaXQvQ2hhbmdlTG9nCmluZGV4IDViYTUzM2ZkNDYyYWFmN2E3
OGYwMWEzOTNlYTgzOGRkNzI3M2U2NDUuLjZhYzU3MzhiZDg4NzYzZWVkYmUwZDc4NjZmYjY4YWFi
NmY2MThiNWQgMTAwNjQ0Ci0tLSBhL1NvdXJjZS9XZWJLaXQvQ2hhbmdlTG9nCisrKyBiL1NvdXJj
ZS9XZWJLaXQvQ2hhbmdlTG9nCkBAIC0xLDMgKzEsMTUgQEAKKzIwMTktMDUtMTUgIEJyZW50IEZ1
bGdoYW0gIDxiZnVsZ2hhbUBhcHBsZS5jb20+CisKKyAgICAgICAgUmV2aXNlIHNhbmRib3ggdG8g
YWxsb3cgSU9LaXQgcHJvcGVydGllcyBuZWVkZWQgYnkgTWV0YWwgYW5kIExhdW5jaFNlcnZpY2Vz
CisgICAgICAgIGh0dHBzOi8vYnVncy53ZWJraXQub3JnL3Nob3dfYnVnLmNnaT9pZD0xOTc5MjQK
KworICAgICAgICBSZXZpZXdlZCBieSBOT0JPRFkgKE9PUFMhKS4KKworICAgICAgICBVcGRhdGUg
c2FuZGJveCB0byBhbGxvdyBhY2Nlc3MgdG8gc29tZSBJT0tpdCBwcm9wZXJ0aWVzIHRvIGF2b2lk
IHNhbmRib3ggdmlvbGF0aW9ucyB0aGF0IGNvdWxkCisgICAgICAgIGxvd2VyIHBlcmZvcm1hbmNl
IG9yIGluY3JlYXNlIGxhdW5jaCB0aW1lczoKKworICAgICAgICAqIFdlYlByb2Nlc3MvY29tLmFw
cGxlLldlYlByb2Nlc3Muc2IuaW46CisKIDIwMTktMDUtMTQgIEJyZW50IEZ1bGdoYW0gIDxiZnVs
Z2hhbUBhcHBsZS5jb20+CiAKICAgICAgICAgUHJvdGVjdCBjdXJyZW50IFdlYkZyYW1lIGR1cmlu
ZyBmb3JtIHN1Ym1pc3Npb24KZGlmZiAtLWdpdCBhL1NvdXJjZS9XZWJLaXQvV2ViUHJvY2Vzcy9j
b20uYXBwbGUuV2ViUHJvY2Vzcy5zYi5pbiBiL1NvdXJjZS9XZWJLaXQvV2ViUHJvY2Vzcy9jb20u
YXBwbGUuV2ViUHJvY2Vzcy5zYi5pbgppbmRleCBlYWIyNTRlZGMwMThmMzMxNzBjZjkyMzA3NzYy
ZTNjZTliNGU0OGI2Li4yYzZjYTU1Y2Q1YjczZmNjZmZhNWNiMTk5NTg0ODQxYTgzNDg1MzQ3IDEw
MDY0NAotLS0gYS9Tb3VyY2UvV2ViS2l0L1dlYlByb2Nlc3MvY29tLmFwcGxlLldlYlByb2Nlc3Mu
c2IuaW4KKysrIGIvU291cmNlL1dlYktpdC9XZWJQcm9jZXNzL2NvbS5hcHBsZS5XZWJQcm9jZXNz
LnNiLmluCkBAIC0yMTEsNiArMjExLDggQEAKICAgICAoaW9raXQtcHJvcGVydHktcmVnZXggIyJB
cHBsZShHVkFLZXlEb2VzTm90RXhpc3R8SW50ZWxNRVZBQnVuZGxlTmFtZSkiKQogICAgIChpb2tp
dC1wcm9wZXJ0eS1yZWdleCAjIl5BQVBMLChEaXNwbGF5UGlwZXxPcGVuQ0xkaXNhYmxlZHxJT0dy
YXBoaWNzX0xFUih8X1JlZ1RhZ18xfF9SZWdUYWdfMHxfQnVzeV8yKXxhbGlhcy1wb2xpY3l8Ym9v
dC1kaXNwbGF5fGRpc3BsYXktYWxpYXN8bXV4LXN3aXRjaC1zdGF0ZXxuZHJ2LWRldnxwcmltYXJ5
LWRpc3BsYXl8c2xvdC1uYW1lKSIpCiAgICAgKGlva2l0LXByb3BlcnR5LXJlZ2V4ICMiXkFUWSwo
Y2JpdHN8ZmJfKGxpbmVieXRlc3xvZmZzZXR8c2l6ZSl8aW50cmV2KSIpCisgICAgKGlva2l0LXBy
b3BlcnR5ICJBVFksRGV2aWNlTmFtZSIpIDs7IE5lZWRlZCBieSBNZXRhbCBjb21waWxlcnMKKyAg
ICAoaW9raXQtcHJvcGVydHkgIkFUWSxGYW1pbHlOYW1lIikgOzsgRGl0dG8KICAgICAoaW9raXQt
cHJvcGVydHkgIkFWQ1N1cHBvcnRlZCIpCiAgICAgKGlva2l0LXByb3BlcnR5ICJCYWNrbGlnaHRI
YW5kbGUiKQogICAgIChpb2tpdC1wcm9wZXJ0eSAiQmxvY2tTaXplIikKQEAgLTM1MywxNiArMzU1
LDE5IEBACiAgICAgKGlva2l0LXByb3BlcnR5ICJkZXZpY2VfdHlwZSIpCiAgICAgKGlva2l0LXBy
b3BlcnR5ICJkcG0iKQogICAgIChpb2tpdC1wcm9wZXJ0eSAiZXJyb3JkYiIpIDs7IE5lZWRlZCBm
b3IgT3BlbkdMIG9uIG9sZGVyIGhhcmR3YXJlCisgICAgKGlva2l0LXByb3BlcnR5ICJmaWxldmF1
bHQtaW1hZ2UiKSA7OyBOZWVkZWQgYnkgTGF1bmNoU2VydmljZXMKICAgICAoaW9raXQtcHJvcGVy
dHkgImdyYXBoaWMtb3B0aW9ucyIpCiAgICAgKGlva2l0LXByb3BlcnR5ICJoZGEtZ2Z4IikKICAg
ICAoaW9raXQtcHJvcGVydHktcmVnZXggIyJeaWQoUHJvZHVjdHxWZW5kb3IpIikKICAgICAoaW9r
aXQtcHJvcGVydHkgImlvZmJfdmVyc2lvbiIpCiAgICAgKGlva2l0LXByb3BlcnR5ICJpbWFnZS1l
bmNyeXB0ZWQiKQorICAgIChpb2tpdC1wcm9wZXJ0eSAiaW1hZ2UtcGF0aCIpIDs7IE5lZWRlZCBi
eSBMYXVuY2hTZXJ2aWNlcwogICAgIChpb2tpdC1wcm9wZXJ0eSAibG9jYXRpb25JRCIpIDs7IE5l
ZWRlZCBmb3IgQXVkaW8gc3VwcG9ydCBvbiBvbGRlciBoYXJkd2FyZQogICAgIChpb2tpdC1wcm9w
ZXJ0eSAibW9kZWwiKQogICAgIChpb2tpdC1wcm9wZXJ0eSAibXQtZGV2aWNlLWlkIikKICAgICAo
aW9raXQtcHJvcGVydHkgIm5hbWUiKQogICAgIChpb2tpdC1wcm9wZXJ0eSAibnYtc3RhdHMiKQor
ICAgIChpb2tpdC1wcm9wZXJ0eSAib2Qtc2VydmVyLW5hbWUiKSA7OyBOZWVkZWQgYnkgTGF1bmNo
U2VydmljZXMKICAgICAoaW9raXQtcHJvcGVydHktcmVnZXggIyJecGFyc2VyLShvcHRpb25zfHR5
cGUpIikKICAgICAoaW9raXQtcHJvcGVydHktcmVnZXggIyJecGNpKC1hc3BtLWRlZmF1bHR8ZGVi
dWcpIikKICAgICAoaW9raXQtcHJvcGVydHkgInBvcnQtbnVtYmVyIikK
</data>
<flag name="review"
          id="386002"
          type_id="1"
          status="+"
          setter="pvollan"
    />
          </attachment>
      

    </bug>

</bugzilla>