Add policy-readers group

The access to the device policy files in /var/lib/whitelist is now gated by the
policy-readers group which is composed of the chronos user and the other daemons
needing access to the device policy.

BUG=chromium:804268
TEST=see both u2fd and chrome can access the device policies.

Change-Id: I125e411aea39708e6bb008c03a60f2ff0bf3c416
Reviewed-on: https://chromium-review.googlesource.com/879147
Commit-Ready: Vincent Palatin <vpalatin@chromium.org>
Tested-by: Vincent Palatin <vpalatin@chromium.org>
Reviewed-by: Dan Erat <derat@chromium.org>
Reviewed-by: Mike Frysinger <vapier@chromium.org>
1 file changed
tree: 9060bf55b3d2134869bc6afa086dc9805965472e
  1. eclass/
  2. metadata/
  3. profiles/
  4. PRESUBMIT.cfg