1{
2    "common" : [{
3        "top-sandbox-switch": "ON",
4        "app-base" : [{
5            "sandbox-ns-flags" : [ "net" ],
6            "mount-paths" : [{
7                    "src-path" : "/config",
8                    "sandbox-path" : "/config",
9                    "sandbox-flags" : [ "bind", "rec" ],
10                    "check-action-status": "false"
11                }, {
12                    "src-path" : "/dev",
13                    "sandbox-path" : "/dev",
14                    "sandbox-flags" : [ "bind", "rec" ],
15                    "check-action-status": "false"
16                }, {
17                    "src-path" : "/proc",
18                    "sandbox-path" : "/proc",
19                    "sandbox-flags" : [ "bind", "rec" ],
20                    "check-action-status": "false"
21                }, {
22                    "src-path" : "/sys",
23                    "sandbox-path" : "/sys",
24                    "sandbox-flags" : [ "bind", "rec" ],
25                    "check-action-status": "false"
26                }, {
27                    "src-path" : "/sys_prod",
28                    "sandbox-path" : "/sys_prod",
29                    "sandbox-flags" : [ "bind", "rec" ],
30                    "check-action-status": "false"
31                }, {
32                    "src-path" : "/system/app",
33                    "sandbox-path" : "/system/app",
34                    "sandbox-flags" : [ "bind", "rec" ],
35                    "check-action-status": "false"
36                }, {
37                    "src-path" : "/module_update",
38                    "sandbox-path" : "/module_update",
39                    "sandbox-flags" : [ "bind", "rec" ],
40                    "check-action-status": "false"
41                }, {
42                    "src-path" : "/system/fonts",
43                    "sandbox-path" : "/system/fonts",
44                    "sandbox-flags" : [ "bind", "rec" ],
45                    "check-action-status": "false"
46                }, {
47                    "src-path" : "/system/lib",
48                    "sandbox-path" : "/system/lib",
49                    "sandbox-flags" : [ "bind", "rec" ],
50                    "check-action-status": "false"
51                }, {
52                    "src-path" : "/system/lib/platformsdk",
53                    "sandbox-path" : "/system/lib/platformsdk",
54                    "sandbox-flags" : [ "bind", "rec" ],
55                    "check-action-status": "false"
56                }, {
57                    "src-path" : "/system/lib/ld-musl-arm.so.1",
58                    "sandbox-path" : "/system/lib/ld-musl-arm.so.1",
59                    "sandbox-flags" : [ "bind", "rec" ],
60                    "check-action-status": "false"
61                },{
62                    "src-path" : "/system/lib/ndk",
63                    "sandbox-path" : "/system/lib/ndk",
64                    "sandbox-flags" : [ "bind", "rec" ],
65                    "check-action-status": "false"
66                }, {
67                    "src-path" : "/system/lib/module",
68                    "sandbox-path" : "/system/lib/module",
69                    "sandbox-flags" : [ "bind", "rec" ],
70                    "check-action-status": "false"
71                }, {
72                    "src-path" : "/system/lib/chipset-pub-sdk",
73                    "sandbox-path" : "/system/lib/chipset-pub-sdk",
74                    "sandbox-flags" : [ "bind", "rec" ],
75                    "check-action-status": "false"
76                }, {
77                    "src-path" : "/system/lib/chipset-sdk",
78                    "sandbox-path" : "/system/lib/chipset-sdk",
79                    "sandbox-flags" : [ "bind", "rec" ],
80                    "check-action-status": "false"
81                }, {
82                    "src-path" : "/system/lib/seccomp",
83                    "sandbox-path" : "/system/lib/seccomp",
84                    "sandbox-flags" : [ "bind", "rec" ],
85                    "check-action-status": "false"
86                }, {
87                    "src-path" : "/system/lib/extensionability",
88                    "sandbox-path" : "/system/lib/extensionability",
89                    "sandbox-flags" : [ "bind", "rec" ],
90                    "check-action-status": "false"
91                }, {
92                    "src-path" : "/system/lib/media",
93                    "sandbox-path" : "/system/lib/media",
94                    "sandbox-flags" : [ "bind", "rec" ],
95                    "check-action-status": "false"
96                }, {
97                    "src-path" : "/system/data",
98                    "sandbox-path" : "/system/data",
99                    "sandbox-flags" : [ "bind", "rec" ],
100                    "check-action-status": "false"
101                }, {
102                    "src-path" : "/system/usr",
103                    "sandbox-path" : "/system/usr",
104                    "sandbox-flags" : [ "bind", "rec" ],
105                    "check-action-status": "false"
106                }, {
107                    "src-path" : "/system/profile",
108                    "sandbox-path" : "/system/profile",
109                    "sandbox-flags" : [ "bind", "rec" ],
110                    "check-action-status": "false"
111                }, {
112                    "src-path" : "/system/bin",
113                    "sandbox-path" : "/system/bin",
114                    "sandbox-flags" : [ "bind", "rec" ],
115                    "check-action-status": "false"
116                }, {
117                    "src-path" : "/system/etc",
118                    "sandbox-path" : "/system/etc",
119                    "sandbox-flags" : [ "bind", "rec" ],
120                    "check-action-status": "false"
121                }, {
122                    "src-path" : "/system/etc/hosts",
123                    "sandbox-path" : "/data/service/el1/network/hosts_user/hosts",
124                    "sandbox-flags" : [ "bind", "rec" ],
125                    "check-action-status": "false"
126                }, {
127                    "src-path" : "/system/resource",
128                    "sandbox-path" : "/system/resource",
129                    "sandbox-flags" : [ "bind", "rec" ],
130                    "check-action-status": "false"
131                }, {
132                    "src-path" : "/vendor/lib",
133                    "sandbox-path" : "/vendor/lib",
134                    "sandbox-flags" : [ "bind", "rec" ],
135                    "check-action-status": "false"
136                }, {
137                    "src-path" : "/vendor/etc/hiai",
138                    "sandbox-path" : "/vendor/etc/hiai",
139                    "sandbox-flags" : [ "bind", "rec" ],
140                    "check-action-status": "false"
141                }, {
142                    "src-path" : "/data/data/hiai",
143                    "sandbox-path" : "/data/data/hiai",
144                    "sandbox-flags" : [ "bind", "rec" ],
145                    "check-action-status": "false"
146                }, {
147                    "src-path" : "/vendor/etc/vulkan",
148                    "sandbox-path" : "/vendor/etc/vulkan",
149                    "sandbox-flags" : [ "bind", "rec" ],
150                    "check-action-status": "false"
151                }, {
152                    "src-path" : "/vendor/etc/passthrough",
153                    "sandbox-path" : "/vendor/etc/passthrough",
154                    "sandbox-flags" : [ "bind", "rec" ],
155                    "check-action-status": "false"
156                }, {
157                    "src-path" : "/mnt/sandbox/<currentUserId>/<PackageName>/data/storage/el2",
158                    "sandbox-path" : "/data/storage/el2",
159                    "sandbox-flags" : [ "bind", "rec" ],
160                    "check-action-status": "false"
161                }, {
162                    "src-path" : "/data/app/el2/<currentUserId>/base/<variablePackageName>",
163                    "sandbox-path" : "/data/storage/el2/base",
164                    "sandbox-flags" : [ "bind", "rec" ],
165                    "check-action-status": "false"
166                }, {
167                    "src-path" : "/data/app/el2/<currentUserId>/log/<variablePackageName>",
168                    "sandbox-path" : "/data/storage/el2/log",
169                    "sandbox-flags" : [ "bind", "rec" ],
170                    "check-action-status": "false"
171                }, {
172                    "src-path" : "/data/app/el1/<currentUserId>/database/<variablePackageName>",
173                    "sandbox-path" : "/data/storage/el1/database",
174                    "sandbox-flags" : [ "bind", "rec" ],
175                    "check-action-status": "true"
176                }, {
177                    "src-path" : "/data/app/el2/<currentUserId>/database/<variablePackageName>",
178                    "sandbox-path" : "/data/storage/el2/database",
179                    "sandbox-flags" : [ "bind", "rec" ],
180                    "check-action-status": "false"
181                }, {
182                    "src-path" : "/data/app/el1/<currentUserId>/base/<variablePackageName>",
183                    "sandbox-path" : "/data/storage/el1/base",
184                    "sandbox-flags" : [ "bind", "rec" ],
185                    "check-action-status": "true"
186                }, {
187                    "src-path" : "/mnt/hmdfs/<currentUserId>",
188                    "sandbox-path" : "/mnt/hmdfs/<currentUserId>",
189                    "sandbox-flags" : [ "bind", "rec" ],
190                    "check-action-status": "false"
191                }, {
192                    "src-path" : "/mnt/hmdfs/<currentUserId>/account/merge_view/data/<PackageName>",
193                    "sandbox-path" : "/data/storage/el2/distributedfiles",
194                    "sandbox-flags" : [ "bind", "rec" ],
195                    "check-action-status": "false"
196                }, {
197                    "src-path" : "/mnt/hmdfs/<currentUserId>/non_account/merge_view/data/",
198                    "sandbox-path" : "/data/storage/el2/auth_groups",
199                    "sandbox-flags" : [ "bind", "rec" ],
200                    "check-action-status": "false"
201                }, {
202                    "src-path" : "/data/local/ark-cache/<PackageName>",
203                    "sandbox-path" : "/data/storage/ark-cache",
204                    "sandbox-flags" : [ "bind", "rec" ],
205                    "check-action-status": "false"
206                }, {
207                    "src-path" : "/data/local/ark-profile/<currentUserId>/<PackageName>",
208                    "sandbox-path" : "/data/storage/ark-profile",
209                    "sandbox-flags" : [ "bind", "rec" ],
210                    "check-action-status": "false"
211                }, {
212                    "src-path" : "/data/local/shader_cache/local/<PackageName>",
213                    "sandbox-path" : "/data/storage/shader_cache/local",
214                    "sandbox-flags" : [ "bind", "rec" ],
215                    "check-action-status": "false"
216                }, {
217                    "src-path" : "/data/local/shader_cache/cloud/<PackageName>",
218                    "sandbox-path" : "/data/storage/shader_cache/cloud",
219                    "sandbox-flags" : [ "bind", "rec" ],
220                    "check-action-status": "false"
221                }, {
222                    "src-path" : "/data/local/shader_cache/cloud/common",
223                    "sandbox-path" : "/data/storage/shader_cache/common",
224                    "sandbox-flags" : [ "bind", "rec" ],
225                    "check-action-status": "false"
226                }, {
227                    "src-path" : "/mnt/share/<currentUserId>/<PackageName_index>",
228                    "sandbox-path" : "/data/storage/el2/share",
229                    "sandbox-flags" : [ "bind", "rec" ],
230                    "check-action-status": "false"
231                }, {
232                    "src-path" : "/data/service/el1/public/themes/<currentUserId>/a/app",
233                    "sandbox-path" : "/data/themes/a/app",
234                    "sandbox-flags" : [ "bind", "rec" ],
235                    "check-action-status": "false"
236                }, {
237                    "src-path" : "/data/service/el1/public/themes/<currentUserId>/b/app",
238                    "sandbox-path" : "/data/themes/b/app",
239                    "sandbox-flags" : [ "bind", "rec" ],
240                    "check-action-status": "false"
241                }, {
242                    "src-path" : "/data/service/el0/public/for-all-app",
243                    "sandbox-path" : "/data/service/el0/public/for-all-app",
244                    "sandbox-flags" : [ "bind", "rec" ],
245                    "check-action-status": "false"
246                }, {
247                    "src-path" : "/data/service/el1/public/for-all-app",
248                    "sandbox-path" : "/data/service/el1/public/for-all-app",
249                    "sandbox-flags" : [ "bind", "rec" ],
250                    "check-action-status": "false"
251                }, {
252                    "src-path" : "/data/service/el1/<currentUserId>/utdtypes/utd",
253                    "sandbox-path" : "/data/utd",
254                    "sandbox-flags" : [ "bind", "rec" ],
255                    "check-action-status": "false"
256                }, {
257                    "src-path" : "/data/service/el1/public/cert_manager_service/certificates/user_open",
258                    "sandbox-path" : "/data/certificates/user_cacerts",
259                    "sandbox-flags" : [ "bind", "rec" ],
260                    "check-action-status": "false"
261                }, {
262                    "src-path" : "/data/app/el3/<currentUserId>/base/<variablePackageName>",
263                    "sandbox-path" : "/data/storage/el3/base",
264                    "sandbox-flags" : [ "bind", "rec" ],
265                    "check-action-status": "false"
266                }, {
267                    "src-path" : "/data/app/el3/<currentUserId>/database/<variablePackageName>",
268                    "sandbox-path" : "/data/storage/el3/database",
269                    "sandbox-flags" : [ "bind", "rec" ],
270                    "check-action-status": "false"
271                }, {
272                    "src-path" : "/data/app/el4/<currentUserId>/base/<variablePackageName>",
273                    "sandbox-path" : "/data/storage/el4/base",
274                    "sandbox-flags" : [ "bind", "rec" ],
275                    "check-action-status": "false"
276                }, {
277                    "src-path" : "/data/app/el4/<currentUserId>/database/<variablePackageName>",
278                    "sandbox-path" : "/data/storage/el4/database",
279                    "sandbox-flags" : [ "bind", "rec" ],
280                    "check-action-status": "false"
281                }, {
282                    "src-path" : "/mnt/hmdfs/<currentUserId>/cloud/data/<PackageName>",
283                    "sandbox-path" : "/data/storage/el2/cloud",
284                    "sandbox-flags" : [ "bind", "rec" ],
285                    "check-action-status": "false"
286                }
287            ],
288            "symbol-links" : [{
289                    "target-name" : "/system/bin",
290                    "link-name" : "/bin",
291                    "check-action-status": "false"
292                }, {
293                    "target-name" : "/system/lib",
294                    "link-name" : "/lib",
295                    "check-action-status": "false"
296                }, {
297                    "target-name" : "/system/etc",
298                    "link-name" : "/etc",
299                    "check-action-status": "false"
300                }, {
301                    "target-name" : "/sys/kernel/debug",
302                    "link-name" : "/d",
303                    "check-action-status": "false"
304                }
305            ]
306        }],
307        "app-resources" : [{
308            "mount-paths" : [{
309                    "src-path" : "/data/app/el1/bundle/public/<arkWebPackageName>",
310                    "sandbox-path" : "/data/storage/el1/bundle/arkwebcore",
311                    "sandbox-flags" : [ "bind", "rec" ],
312                    "check-action-status": "false"
313                }, {
314                    "src-path" : "/system/app/ohos.global.systemres",
315                    "sandbox-path" : "/data/global/systemResources",
316                    "sandbox-flags" : [ "bind", "rec" ],
317                    "check-action-status": "false"
318                }, {
319                    "src-path" : "/system/app/SystemResources",
320                    "sandbox-path" : "/data/global/systemResources",
321                    "sandbox-flags" : [ "bind", "rec" ],
322                    "check-action-status": "false"
323                }, {
324                    "src-path" : "/data/misc",
325                    "sandbox-path" : "/data/storage/el1/bundle/misc",
326                    "sandbox-flags" : [ "bind", "rec" ],
327                    "check-action-status": "false"
328                }
329            ],
330        "flags-point" : [{
331                    "flags": "DLP_MANAGER",
332                    "mount-paths" : [{
333                        "src-path" : "/data/app/el2/<currentUserId>/base/<PackageName_index>",
334                        "sandbox-path" : "/data/storage/el2/base",
335                        "sandbox-flags" : [ "bind", "rec" ],
336                        "check-action-status": "false"
337                    },{
338                        "src-path" : "/data/app/el1/<currentUserId>/database/<PackageName_index>",
339                        "sandbox-path" : "/data/storage/el1/database",
340                        "sandbox-flags" : [ "bind", "rec" ],
341                        "check-action-status": "false"
342                    }, {
343                        "src-path" : "/data/app/el2/<currentUserId>/database/<PackageName_index>",
344                        "sandbox-path" : "/data/storage/el2/database",
345                        "sandbox-flags" : [ "bind", "rec" ],
346                        "check-action-status": "false"
347                    }, {
348                        "src-path" : "/data/app/el1/<currentUserId>/base/<PackageName_index>",
349                        "sandbox-path" : "/data/storage/el1/base",
350                        "sandbox-flags" : [ "bind", "rec" ],
351                        "check-action-status": "false"
352                    }, {
353                        "src-path" : "/data/app/el2/<currentUserId>/log/<PackageName_index>",
354                        "sandbox-path" : "/data/storage/el2/log",
355                        "sandbox-flags" : [ "bind", "rec" ],
356                        "check-action-status": "false"
357                    }, {
358                        "src-path" : "/mnt/share/<currentUserId>/<PackageName_index>",
359                        "sandbox-path" : "/data/storage/el2/share",
360                        "sandbox-flags" : [ "bind", "rec" ],
361                        "check-action-status": "false"
362                    }
363                    ]}, {
364                        "flags": "START_FLAGS_BACKUP",
365                        "mount-paths": [{
366                            "src-path": "/data/app/el2/<currentUserId>/base/<PackageName>/.backup",
367                            "sandbox-path": "/data/storage/el2/backup",
368                            "sandbox-flags": [ "bind", "rec" ],
369                            "check-action-status": "true"
370                        }, {
371                            "src-path" : "/data/app/el1/<currentUserId>/base/<PackageName>/.backup",
372                            "sandbox-path" : "/data/storage/el1/backup",
373                            "sandbox-flags" : [ "bind", "rec" ],
374                            "check-action-status": "false"
375                        }
376                    ]}, {
377                        "flags": "DEVELOPER_MODE",
378                        "mount-paths": [{
379                            "src-path": "/data/app/el1/bundle/<currentUserId>/hnppublic",
380                            "sandbox-path": "/data/service/hnp",
381                            "sandbox-flags": [ "bind", "rec" ],
382                            "check-action-status": "false"
383                        }, {
384                            "src-path" : "/data/app/el1/bundle/<currentUserId>/hnp/<PackageName>",
385                            "sandbox-path" : "/data/app",
386                            "sandbox-flags" : [ "bind", "rec" ],
387                            "check-action-status": "false"
388                        }
389                    ]}
390            ],
391            "symbol-links" : [
392            ]
393        }]
394    }],
395    "individual" : [{
396        "com.ohos.medialibrary.medialibrarydata" : [{
397            "sandbox-switch": "ON",
398            "mount-paths" : [{
399                    "src-path" : "/storage/media/<currentUserId>",
400                    "sandbox-path" : "/storage/media",
401                    "sandbox-flags" : [ "bind", "rec" ],
402                    "check-action-status": "false"
403                }, {
404                    "src-path" : "/data/service/el2/<currentUserId>/hmdfs/cache/account_cache",
405                    "sandbox-path" : "/data/service/el2/<currentUserId>/hmdfs/cache/account_cache",
406                    "sandbox-flags" : [ "bind", "rec" ],
407                    "check-action-status": "false"
408                }, {
409                    "src-path" : "/storage/cloud/<currentUserId>",
410                    "sandbox-path" : "/storage/cloud",
411                    "sandbox-flags" : [ "bind", "rec" ],
412                    "check-action-status": "true"
413                }, {
414                    "src-path" : "none",
415                    "sandbox-path" : "/storage/cloud/epfs",
416                    "sandbox-flags" : [ "MS_NODEV" ],
417                    "fs-type": "epfs",
418                    "check-action-status": "false"
419                }, {
420                    "src-path" : "/mnt/data/<currentUserId>",
421                    "sandbox-path" : "/mnt/data/<currentUserId>",
422                    "sandbox-flags" : [ "bind", "rec" ],
423                    "check-action-status": "false"
424                }
425            ],
426            "symbol-links" : []
427        }],
428        "com.ohos.sceneboard" : [{
429            "sandbox-switch": "ON",
430            "gids": [1065],
431            "mount-paths" : [{
432                    "src-path" : "/data/app/el1/bundle/public/",
433                    "sandbox-path" : "/data/app/el1/bundle/public/",
434                    "sandbox-flags" : [ "bind", "rec" ],
435                    "check-action-status": "true"
436                }
437            ],
438            "symbol-links" : []
439        }],
440        "com.ohos.settingsdata":[{
441            "sandbox-switch": "ON",
442            "gids": [1065],
443            "mount-paths": [],
444            "symbol-links": []
445        }],
446        "com.ohos.permissionmanager" : [{
447            "sandbox-switch": "ON",
448            "mount-paths" : [{
449                    "src-path" : "/data/app/el1/bundle/public/",
450                    "sandbox-path" : "/data/bundles/",
451                    "sandbox-flags" : [ "bind", "rec" ],
452                    "check-action-status": "true"
453                }
454            ],
455            "symbol-links" : []
456        }],
457        "com.ohos.amsdialog" : [{
458            "sandbox-switch": "ON",
459            "mount-paths" : [{
460                    "src-path" : "/data/app/el1/bundle/public/",
461                    "sandbox-path" : "/data/bundles/",
462                    "sandbox-flags" : [ "bind", "rec" ],
463                    "check-action-status": "true"
464                }
465            ],
466            "symbol-links" : []
467        }],
468        "com.ohos.UserFile.ExternalFileManager" : [{
469            "sandbox-switch": "ON",
470            "mount-paths" : [{
471                    "src-path" : "/data/service/el1/public/storage_daemon/share/public",
472                    "sandbox-path" : "/data/storage/el1/bundle/storage_daemon",
473                    "sandbox-flags" : [ "bind", "rec" ],
474                    "check-action-status": "true"
475                },
476                {
477                    "src-path" : "/mnt/data/external",
478                    "sandbox-path" : "/mnt/external",
479                    "sandbox-flags" : [ "bind", "rec" ],
480                    "check-action-status": "true"
481                }
482            ],
483            "symbol-links" : []
484        }],
485        "__internal__.com.ohos.render" : [{
486            "sandbox-root" : "/mnt/sandbox/com.ohos.render/<PackageName>",
487            "sandbox-ns-flags" : [ "pid", "net" ],
488            "mount-paths" : [{
489                    "src-path" : "/dev",
490                    "sandbox-path" : "/dev",
491                    "sandbox-flags" : [ "bind", "rec" ],
492                    "check-action-status": "false"
493                }, {
494                    "src-path" : "/proc",
495                    "sandbox-path" : "/proc",
496                    "sandbox-flags" : [ "bind", "rec" ],
497                    "check-action-status": "false"
498                }, {
499                    "src-path" : "/sys",
500                    "sandbox-path" : "/sys",
501                    "sandbox-flags" : [ "bind", "rec" ],
502                    "check-action-status": "false"
503                }, {
504                    "src-path" : "/system/fonts",
505                    "sandbox-path" : "/system/fonts",
506                    "sandbox-flags" : [ "bind", "rec" ],
507                    "check-action-status": "false"
508                }, {
509                    "src-path" : "/system/etc",
510                    "sandbox-path" : "/system/etc",
511                    "sandbox-flags" : [ "bind", "rec" ],
512                    "check-action-status": "false"
513                }, {
514                    "src-path" : "/system/etc/hosts",
515                    "sandbox-path" : "/data/service/el1/network/hosts_user/hosts",
516                    "sandbox-flags" : [ "bind", "rec" ],
517                    "check-action-status": "false"
518                }, {
519                    "src-path" : "/data/app/el1/bundle/public/<arkWebPackageName>",
520                    "sandbox-path" : "/data/storage/el1/bundle/arkwebcore",
521                    "sandbox-flags" : [ "bind", "rec" ],
522                    "check-action-status": "false"
523                }, {
524                    "src-path" : "/system/bin",
525                    "sandbox-path" : "/system/bin",
526                    "sandbox-flags" : [ "bind", "rec" ],
527                    "check-action-status": "false"
528                }, {
529                    "src-path" : "/system/lib",
530                    "sandbox-path" : "/system/lib",
531                    "sandbox-flags" : [ "bind", "rec" ],
532                    "check-action-status": "false"
533                }, {
534                    "src-path" : "/system/lib/platformsdk",
535                    "sandbox-path" : "/system/lib/platformsdk",
536                    "sandbox-flags" : [ "bind", "rec" ],
537                    "check-action-status": "false"
538                }, {
539                    "src-path" : "/system/lib/ndk",
540                    "sandbox-path" : "/system/lib/ndk",
541                    "sandbox-flags" : [ "bind", "rec" ],
542                    "check-action-status": "false"
543                }, {
544                    "src-path" : "/system/lib/module",
545                    "sandbox-path" : "/system/lib/module",
546                    "sandbox-flags" : [ "bind", "rec" ],
547                    "check-action-status": "false"
548                }, {
549                    "src-path" : "/system/lib/chipset-pub-sdk",
550                    "sandbox-path" : "/system/lib/chipset-pub-sdk",
551                    "sandbox-flags" : [ "bind", "rec" ],
552                    "check-action-status": "false"
553                }, {
554                    "src-path" : "/system/lib/chipset-sdk",
555                    "sandbox-path" : "/system/lib/chipset-sdk",
556                    "sandbox-flags" : [ "bind", "rec" ],
557                    "check-action-status": "false"
558                }, {
559                    "src-path" : "/system/lib/seccomp",
560                    "sandbox-path" : "/system/lib/seccomp",
561                    "sandbox-flags" : [ "bind", "rec" ],
562                    "check-action-status": "false"
563                }, {
564                    "src-path" : "/system/lib/extensionability",
565                    "sandbox-path" : "/system/lib/extensionability",
566                    "sandbox-flags" : [ "bind", "rec" ],
567                    "check-action-status": "false"
568                }, {
569                    "src-path" : "/system/lib/media",
570                    "sandbox-path" : "/system/lib/media",
571                    "sandbox-flags" : [ "bind", "rec" ],
572                    "check-action-status": "false"
573                }, {
574                    "src-path" : "/system/lib/ld-musl-arm.so.1",
575                    "sandbox-path" : "/system/lib/ld-musl-arm.so.1",
576                    "sandbox-flags" : [ "bind", "rec" ],
577                    "check-action-status": "false"
578                }, {
579                    "src-path" : "/system/app/<arkWebPackageName>",
580                    "sandbox-path" : "/system/app/<arkWebPackageName>",
581                    "sandbox-flags" : [ "bind", "rec" ],
582                    "check-action-status": "false"
583                }, {
584                    "src-path" : "/vendor/lib",
585                    "sandbox-path" : "/vendor/lib",
586                    "sandbox-flags" : [ "bind", "rec" ],
587                    "check-action-status": "false"
588                }, {
589                    "src-path" : "/data/app/el1/bundle/public/<arkWebPackageName>",
590                    "sandbox-path" : "/data/app/el1/bundle/public/<arkWebPackageName>",
591                    "sandbox-flags" : [ "bind", "rec" ],
592                    "check-action-status": "false"
593                }, {
594                    "src-path" : "/system/app/NWeb",
595                    "sandbox-path" : "/system/app/NWeb",
596                    "sandbox-flags" : [ "bind", "rec" ],
597                    "check-action-status": "false"
598                }, {
599                    "src-path" : "/module_update/ArkWebCore/app/<arkWebPackageName>",
600                    "sandbox-path" : "/module_update/ArkWebCore/app/<arkWebPackageName>",
601                    "sandbox-flags" : [ "bind", "rec" ],
602                    "check-action-status": "false"
603                }
604            ],
605            "symbol-links" : [{
606                    "target-name" : "/system/etc",
607                    "link-name" : "/etc",
608                    "check-action-status": "false"
609                }, {
610                    "target-name" : "/system/bin",
611                    "link-name" : "/bin",
612                    "check-action-status": "false"
613                }, {
614                    "target-name" : "/system/lib",
615                    "link-name" : "/lib",
616                    "check-action-status": "false"
617                }
618            ],
619            "flags-point" : [{
620                "flags": "DLP_MANAGER",
621                "sandbox-root" : "/mnt/sandbox/com.ohos.render/<PackageName>",
622                "mount-paths" : [],
623                "symbol-links" : [{}]
624            }]
625        }]
626    }],
627    "permission":[{
628        "ohos.permission.FILE_ACCESS_MANAGER":[{
629            "sandbox-switch": "ON",
630            "gids": [1006, 1008],
631            "mount-paths": [{
632                    "src-path": "/data/service/el1/public/storage_daemon/share/public",
633                    "sandbox-path": "/storage/Share",
634                    "sandbox-flags": [ "bind", "rec" ]
635                },
636                {
637                    "src-path": "/mnt/data/external",
638                    "sandbox-path": "/storage/External",
639                    "sandbox-flags": [ "bind", "rec" ]
640                },
641                {
642                    "src-path": "/storage/media/<currentUserId>/local/files/Docs",
643                    "sandbox-path": "/storage/Users/<currentUserId>",
644                    "sandbox-flags": [ "bind", "rec" ]
645                },
646                {
647                    "src-path": "/storage/media/<currentUserId>/local/files/.Recent",
648                    "sandbox-path": "/storage/Users/<currentUserId>/.Recent",
649                    "sandbox-flags": [ "bind", "rec" ]
650                },
651                {
652                    "src-path": "/data/app/el1/<currentUserId>/base",
653                    "sandbox-path": "/storage/Users/<currentUserId>/appdata/el1/base",
654                    "sandbox-flags-customized": ["MS_NODEV"],
655                    "dac-override-sensitive": "true",
656                    "fs-type": "sharefs",
657                    "options": "override"
658                },
659                {
660                    "src-path": "/data/app/el2/<currentUserId>/base",
661                    "sandbox-path": "/storage/Users/<currentUserId>/appdata/el2/base",
662                    "sandbox-flags-customized": ["MS_NODEV"],
663                    "dac-override-sensitive": "true",
664                    "fs-type": "sharefs",
665                    "options": "override"
666                },
667                {
668                    "src-path": "/mnt/hmdfs/<currentUserId>/account/merge_view/data",
669                    "sandbox-path": "/storage/Users/<currentUserId>/appdata/el2/distributedfiles",
670                    "sandbox-flags": [ "bind", "rec" ]
671                },
672                {
673                    "src-path": "/mnt/data/<currentUserId>/hmdfs",
674                    "sandbox-path": "/storage/hmdfs",
675                    "sandbox-flags": [ "bind", "rec" ]
676                }
677            ]
678        }],
679        "ohos.permission.READ_IMAGEVIDEO":[{
680            "sandbox-switch": "ON",
681            "gids": [2008],
682            "mount-paths": [{
683                    "src-path": "/storage/cloud/<currentUserId>/files/.thumbs/Photo",
684                    "sandbox-path": "/storage/Share/.thumbs/Photo",
685                    "sandbox-flags": [ "bind", "rec" ]
686                }
687            ]
688        }],
689        "ohos.permission.FILE_CROSS_APP":[{
690            "sandbox-switch": "ON",
691            "mount-paths": [{
692                    "src-path": "/storage/media/<currentUserId>/local/files/Docs",
693                    "sandbox-path": "/storage/Users/<currentUserId>",
694                    "sandbox-flags": [ "bind", "rec" ]
695                },
696                {
697                    "src-path": "/data/app/el1/<currentUserId>/base",
698                    "sandbox-path": "/storage/Users/<currentUserId>/appdata/el1",
699                    "sandbox-flags-customized": ["MS_NODEV"],
700                    "dac-override-sensitive": "true",
701                    "fs-type": "sharefs",
702                    "options": "override"
703                },
704                {
705                    "src-path": "/data/app/el2/<currentUserId>/base",
706                    "sandbox-path": "/storage/Users/<currentUserId>/appdata/el2",
707                    "sandbox-flags-customized": ["MS_NODEV"],
708                    "dac-override-sensitive": "true",
709                    "fs-type": "sharefs",
710                    "options": "override"
711                },
712                {
713                    "src-path": "/data/service/el1/public/storage_daemon/share/public",
714                    "sandbox-path": "/storage/Share",
715                    "sandbox-flags": [ "bind", "rec" ]
716                },
717                {
718                    "src-path": "/mnt/data/external",
719                    "sandbox-path": "/storage/External",
720                    "sandbox-flags": [ "bind", "rec" ]
721                }
722            ]
723        }],
724        "ohos.permission.FILE_ACCESS_COMMON_DIR":[{
725            "sandbox-switch": "ON",
726            "mount-paths": [{
727                    "src-path": "/storage/media/<currentUserId>/local/files/Docs",
728                    "sandbox-path": "/storage/Users/currentUser",
729                    "sandbox-flags": [ "MS_NODEV" ],
730                    "dac-override-sensitive": "true",
731                    "fs-type": "sharefs",
732                    "options": "override"
733                }
734            ]
735        }],
736        "ohos.permission.ACTIVATE_THEME_PACKAGE":[{
737            "sandbox-switch": "ON",
738            "gids": [3817],
739            "mount-paths": [{
740                    "src-path": "/data/service/el1/public/themes/<currentUserId>/a/system",
741                    "sandbox-path": "/data/themes/a/system",
742                    "sandbox-flags": [ "bind", "rec" ]
743                }, 
744                {
745                    "src-path": "/data/service/el1/public/themes/<currentUserId>/b/system",
746                    "sandbox-path": "/data/themes/b/system",
747                    "sandbox-flags": [ "bind", "rec" ]
748                },
749                {
750                    "src-path": "/data/service/el1/public/themes/<currentUserId>/fa",
751                    "sandbox-path": "/data/themes/f",
752                    "sandbox-flags": [ "bind", "rec" ]
753                },
754                {
755                    "src-path": "/data/service/el1/public/themes/<currentUserId>/share",
756                    "sandbox-path": "/data/themes/s",
757                    "sandbox-flags": [ "bind", "rec" ]
758                }
759            ]
760        }],
761        "ohos.permission.GET_WALLPAPER":[{
762            "sandbox-switch": "ON",
763            "mount-paths": [{
764                    "src-path": "/data/service/el1/public/wallpaper/<currentUserId>",
765                    "sandbox-path": "/data/wallpaper",
766                    "sandbox-flags": [ "bind", "rec" ]
767                }
768            ]
769        }],
770        "ohos.permission.ACCESS_BUNDLE_DIR":[{
771            "sandbox-switch": "ON",
772            "gids": [1010],
773            "mount-paths": [{
774                    "src-path": "/data/app/el1/bundle/public",
775                    "sandbox-path": "/data/bundles/",
776                    "sandbox-flags": [ "bind", "rec" ]
777                }
778            ]
779        }],
780        "ohos.permission.ACCESS_BBOX_DIR":[{
781            "sandbox-switch": "ON",
782            "mount-paths": [{
783                    "src-path": "/data/log/bbox/",
784                    "sandbox-path": "/data/log/bbox/",
785                    "sandbox-flags": [ "bind", "rec" ]
786                }
787            ]
788        }],
789        "ohos.permission.ACCESS_PROTOCOL_DFX_DATA":[{
790            "sandbox-switch": "ON",
791            "gids": [1007],
792            "mount-paths": [{
793                    "src-path": "/data/service/el1/public/chr/protocol",
794                    "sandbox-path": "/data/log/protocol",
795                    "sandbox-flags": [ "bind", "rec" ]
796                },
797                {
798                    "src-path": "/log/chr",
799                    "sandbox-path": "/log/chr",
800                    "sandbox-flags": [ "bind", "rec" ]
801                }
802            ]
803        }],
804        "ohos.permission.ACCESS_MEDIALIB_THUMB_DB":[{
805            "sandbox-switch": "ON",
806            "gids": [3008],
807            "mount-paths": [{
808                    "src-path": "/data/app/el2/<currentUserId>/database/com.ohos.medialibrary.medialibrarydata",
809                    "sandbox-path": "/data/medialibrary/database",
810                    "sandbox-flags": [ "bind", "rec" ]
811                }
812            ]
813        }],
814        "ohos.permission.ACCESS_SHADER_CACHE_DIR":[{
815            "sandbox-switch": "ON",
816            "mount-paths": [{
817                    "src-path": "/data/local/shader_cache",
818                    "sandbox-path": "/data/storage/shader_caches",
819                    "sandbox-flags": [ "bind", "rec" ]
820                }
821            ]
822        }],
823        "ohos.permission.ACCESS_DLP_FILE" : [{
824            "sandbox-switch": "ON",
825            "sandbox-shared" : "true",
826            "mount-paths" : [{
827                    "src-path" : "/mnt/data/<currentUserId>",
828                    "sandbox-path" : "/mnt/data",
829                    "sandbox-flags" : [ "bind", "rec" ],
830                    "mount-shared-flag" : "true",
831                    "check-action-status": "true"
832                }, {
833                    "src-path" : "/dev/fuse",
834                    "sandbox-path" : "/mnt/data/fuse",
835                    "sandbox-flags" : [ "MS_NOSUID", "MS_NODEV", "MS_NOEXEC", "MS_NOATIME", "MS_LAZYTIME" ],
836                    "dac-override-sensitive": "true",
837                    "fs-type": "fuse",
838                    "check-action-status": "false"
839                }
840            ]
841        }],
842        "ohos.permission.ACCESS_LOCAL_BACKUP":[{
843            "sandbox-switch": "ON",
844            "gids": [1023],
845            "mount-paths": [{
846                    "src-path": "/data/hwbackup",
847                    "sandbox-path": "/data/hwbackup",
848                    "sandbox-flags": [ "bind", "rec" ],
849                    "check-action-status": "false"
850                }
851            ]
852        }],
853        "ohos.permission.ACCESS_HIVIEWX":[{
854            "sandbox-switch": "ON",
855            "mount-paths": [{
856                    "src-path": "/data/log/UserView",
857                    "sandbox-path": "/data/log/UserView",
858                    "sandbox-flags": [ "bind", "rec" ]
859                }
860            ]
861        }],
862        "ohos.permission.RECEIVE_UPDATE_MESSAGE":[{
863            "sandbox-switch": "ON",
864            "mount-paths": [{
865                    "src-path": "/data/service/el1/public/update/param_service/install/system/etc/<PackageName>",
866                    "sandbox-path": "/data/service/el1/public/update/param_service/install/system/etc/<PackageName>",
867                    "sandbox-flags": [ "bind", "rec" ],
868                    "check-action-status": "false"
869                }
870            ]
871        }],
872        "ohos.permission.READ_DFX_XPOWER":[{
873            "sandbox-switch": "ON",
874            "mount-paths": [{
875                    "src-path": "/data/log/xpower",
876                    "sandbox-path": "/data/log/xpower",
877                    "sandbox-flags": [ "bind", "rec" ]
878                }
879            ]
880        }],
881        "ohos.permission.PROTECT_SCREEN_LOCK_DATA":[{
882            "sandbox-switch": "ON",
883            "mount-paths": [{
884                    "src-path": "/data/app/el5/<currentUserId>/base/<PackageName>",
885                    "sandbox-path": "/data/storage/el5/base",
886                    "sandbox-flags": [ "bind", "rec" ],
887                    "check-action-status": "false"
888                },
889                {
890                    "src-path": "/data/app/el5/<currentUserId>/database/<PackageName>",
891                    "sandbox-path": "/data/storage/el5/database",
892                    "sandbox-flags": [ "bind", "rec" ],
893                    "check-action-status": "false"
894                }
895            ]
896	    }],
897        "ohos.permission.ACCESS_FILE_CONTENT_SHARE":[{
898            "sandbox-switch": "ON",
899            "gids": [1006, 1008],
900            "mount-paths": [{
901                    "src-path": "/data/service/el2/<currentUserId>/file_monitor_service/content_share",
902                    "sandbox-path": "/storage/ContentShare",
903                    "sandbox-flags": [ "bind", "rec" ]
904                }
905            ]
906        }],
907        "ohos.permission.ACCESS_RINGTONE_RESOURCE":[{
908            "sandbox-switch": "ON",
909            "gids": [1008],
910            "mount-paths": [{
911                    "src-path": "/storage/media/<currentUserId>/local/files",
912                    "sandbox-path": "/storage/media/local/files",
913                    "sandbox-flags": [ "bind", "rec" ]
914                }
915            ]
916        }],
917        "ohos.permission.ACCESS_FACTORY_OTA_DIR":[{
918            "sandbox-switch": "ON",
919            "mount-paths": [{
920                    "src-path": "/data/update/sd_package",
921                    "sandbox-path": "/data/update/sd_package",
922                    "sandbox-flags": [ "bind", "rec" ],
923                    "check-action-status": "false"
924                }
925            ]
926        }],
927        "ohos.permission.GET_ALL_PROCESSES":[{
928            "sandbox-switch": "ON",
929            "gids": [3009],
930            "mount-paths": []
931        }],
932        "ohos.permission.ACCESS_ANALYTICS":[{
933            "sandbox-switch": "ON",
934            "gids": [1007],
935            "mount-paths": [{
936                    "src-path": "/data/log/faultlog/faultlogger",
937                    "sandbox-path": "/data/log/faultlog/faultlogger",
938                    "sandbox-flags": [ "bind", "rec" ]
939                }
940            ]
941        }]
942    }]
943}
944