netd bpf program - use finer grained selinux privs, part 1

Make use of new BpfLoader functionality: per-map/program selinux context
to further restrict access to mainline module shipped bpf maps and programs.

Note: minor fixup during cherrypick to deal with lack of the
require 4.14 patch in tm-dev.

Bug: 218408035
Test: booted on cuttlefish, TreeHugger
Change-Id: Iaa33754aaca8bfafef6539abfbdd30b4cdfc4727
Merged-In: Iaa33754aaca8bfafef6539abfbdd30b4cdfc4727
(cherry picked from commit cae181d7773f15d78ce49ec0e839690e39270465)
1 file changed