Gitiles
Code Review
Sign In
gerrit.omnirom.org
/
android_system_sepolicy
/
53950b6595e329b2961d27f2445b6711bd2b192b
/
private
53950b6
Fix bug map entry
by Jeff Vander Stoep
· 8 years ago
df642be
Continuation of 9b2e0cbeeaae560b07e4ffa6e5b8e505699e4a76
by Nick Kralevich
· 8 years ago
7631157
Label /vendor/priv-app as vendor_app_file
by Jiyong Park
· 8 years ago
b9ea282
Merge "sepolicy: Add rules for non-init namespaces"
by Benjamin Gordon
· 8 years ago
11c5700
Merge "Remove tracking bugs that have been resolved"
by Treehugger Robot
· 8 years ago
9b2e0cb
sepolicy: Add rules for non-init namespaces
by Benjamin Gordon
· 8 years ago
378763f
Remove tracking bugs that have been resolved
by Jeff Vander Stoep
· 8 years ago
df8d4b8
Allow system_server to remove files in /data/misc/wmtrace/*
by Vishnu Nair
· 8 years ago
0f5ad4e
Allow AOSP processes to read pm_prop
by Jeff Vander Stoep
· 8 years ago
6faa3a1
Merge "shell: neverallow access to 'proc' label."
by Tri Vo
· 8 years ago
97c8651
Merge "Add window trace files SELinux policy rules"
by Treehugger Robot
· 8 years ago
c4ef363
shell: neverallow access to 'proc' label.
by Tri Vo
· 8 years ago
499fd01
Merge "mediaserver: remove access to 'sysfs' type."
by Tri Vo
· 8 years ago
2d6942d
Add window trace files SELinux policy rules
by Vishnu Nair
· 8 years ago
2557673
Merge "system_server: access to /proc/sys/fs/pipe-max-size"
by Treehugger Robot
· 8 years ago
2ea12cd
mediaserver: remove access to 'sysfs' type.
by Tri Vo
· 8 years ago
e7f4934
system_server: access to /proc/sys/fs/pipe-max-size
by Tri Vo
· 8 years ago
0d7e504
Merge "Revert "Revert "Put pm.* property in new pm_prop context"""
by Nicolas Geoffray
· 8 years ago
5316548
Revert "Revert "Put pm.* property in new pm_prop context""
by Calin Juravle
· 8 years ago
5984301
Merge "Copy a dontaudit from init to vendor_init"
by Treehugger Robot
· 8 years ago
63492cd
Copy a dontaudit from init to vendor_init
by Tom Cherry
· 8 years ago
248b6dc
Revert "Put pm.* property in new pm_prop context"
by Calin Juravle
· 8 years ago
aca97bc
Merge "update_verifier: neverallow access to 'sysfs' label."
by Tri Vo
· 8 years ago
7dd4d90
update_verifier: neverallow access to 'sysfs' label.
by Tri Vo
· 8 years ago
41401f4
Add tracking bugs to crash_dump denials
by Jeff Vander Stoep
· 8 years ago
7c66277
Merge "Allow Instant/V2 apps to load code from /data/data"
by Treehugger Robot
· 8 years ago
721b305
Merge "Revert "update_verifier: neverallow access to 'sysfs' label.""
by Jeffrey Vander Stoep
· 8 years ago
7650669
Allow Instant/V2 apps to load code from /data/data
by Chad Brubaker
· 8 years ago
23e58d1
Revert "update_verifier: neverallow access to 'sysfs' label."
by Tri Vo
· 8 years ago
f5e53e0
Merge "Add tracking bugs to denials"
by Treehugger Robot
· 8 years ago
a61b99b
update_verifier: neverallow access to 'sysfs' label.
by Tri Vo
· 8 years ago
29666d1
Add tracking bugs to denials
by Jeff Vander Stoep
· 8 years ago
6fe014f
Allow update_engine to access /data/misc/update_engine_log
by Hakan Kvist
· 8 years ago
aa93dad
Merge changes from topic "cki_proc_init"
by Tri Vo
· 8 years ago
182dbeb
Suppress mediaprover access to certain cache dirs
by Jeff Vander Stoep
· 8 years ago
63f4677
Allow vendor apps to use surfaceflinger_service
by Jeff Vander Stoep
· 8 years ago
84e181b
init: label /proc dependencies and remove access to proc
by Tri Vo
· 8 years ago
d1cf3a4
Put pm.* property in new pm_prop context
by Victor Hsieh
· 8 years ago
640e595
Allow callers of uevent_kernel_*() access to /proc/sys/kernel/overflowuid
by Luis Hector Chavez
· 8 years ago
19f8b86
system_server: neverallow sysfs file access.
by Tri Vo
· 8 years ago
c394258
Remove deprecated aliases
by Jeff Vander Stoep
· 8 years ago
5aac163
radio: neverallow access to proc and sysfs types.
by Tri Vo
· 8 years ago
daac339
Merge "Don't allow dexoptanalyzer to open app_data_files"
by Treehugger Robot
· 8 years ago
b8a4249
Don't allow dexoptanalyzer to open app_data_files
by Shubham Ajmera
· 8 years ago
233c7a6
Neverallow coredomain to kernel interface files.
by Tri Vo
· 8 years ago
4200338
Merge "Revert "Neverallow coredomain to kernel interface files.""
by Tri Vo
· 8 years ago
83a0680
Revert "Neverallow coredomain to kernel interface files."
by Tobias Thierer
· 8 years ago
bf4786c
Merge "Neverallow coredomain to kernel interface files."
by Tri Vo
· 8 years ago
35e9239
whitespace fix.
by Nick Kralevich
· 8 years ago
502e43f
Neverallow coredomain to kernel interface files.
by Tri Vo
· 8 years ago
5850a2a
Move most of public/vold_prepare_subdirs.te to private
by Paul Crowley
· 8 years ago
621c24c
add vendor_init.te
by Tom Cherry
· 8 years ago
8bdb1da
Add label for /proc/sys/vm/page-cluster
by Tom Cherry
· 8 years ago
71b19aa
Merge "/proc, /sys access from uncrypt, update_engine, postinstall_dexopt"
by Tri Vo
· 8 years ago
8e80585
Merge "allow vold_prepare_subdirs to create storaged directories"
by Treehugger Robot
· 8 years ago
04fb82f
/proc, /sys access from uncrypt, update_engine, postinstall_dexopt
by Tri Vo
· 8 years ago
0187b23
Adding statscompanion_service and a dontaudit for find/add
by Max Bires
· 8 years ago
1ff4148
Merge "Revert "Ensure only com.android.shell can run in the shell domain.""
by Treehugger Robot
· 8 years ago
bf0c2a5
Revert "Ensure only com.android.shell can run in the shell domain."
by Nick Kralevich
· 8 years ago
c012533
allow vold_prepare_subdirs to create storaged directories
by Jin Qian
· 8 years ago
81d8b0e
storaged: move storaged file from DE to CE
by Jin Qian
· 8 years ago
d1467ad
Merge "priv_app: move logspam suppression to core policy"
by Treehugger Robot
· 8 years ago
917cf07
Merge "Fixup neverallow rule"
by Treehugger Robot
· 8 years ago
8dabc2c
Restrict netd fwk policy.
by Tri Vo
· 8 years ago
4a14d16
Merge "Relabeling /proc/asound so everything has proc_asound label"
by Max Bires
· 8 years ago
6233848
priv_app: move logspam suppression to core policy
by Jeff Vander Stoep
· 8 years ago
2ec15e5
Fixup neverallow rule
by Nick Kralevich
· 8 years ago
714ee5f
Ensure only com.android.shell can run in the shell domain.
by Nick Kralevich
· 8 years ago
d18ff63
Merge "sepolicy for lazy starting HIDL services"
by Treehugger Robot
· 8 years ago
aae1818
Relabeling /proc/asound so everything has proc_asound label
by Max Bires
· 8 years ago
13c3946
sepolicy for lazy starting HIDL services
by Steven Moreland
· 8 years ago
aed69d6
Allowing system_server to search sysfs_power dir
by Max Bires
· 8 years ago
5b962cf
vold_prepare_subdirs sets policy in vold-created dirs.
by Paul Crowley
· 8 years ago
fd03d51
lowpan: Add wpantund to SEPolicy
by Robert Quattlebaum
· 8 years ago
bbc692c
PowerUI access to thermalservice
by Todd Poynor
· 8 years ago
fce64b0
Merge "system_app: suppress denials for disallowed services"
by Treehugger Robot
· 8 years ago
49bb118
Merge "Track priv_app firstboot_prop denial"
by Treehugger Robot
· 8 years ago
2d32d81
system_app: suppress denials for disallowed services
by Jeff Vander Stoep
· 8 years ago
e82c8ab
Track priv_app firstboot_prop denial
by Jeff Vander Stoep
· 8 years ago
1960215
Label system_server's dependencies in sysfs.
by Tri Vo
· 8 years ago
06cef4f
Neverallow write access to /sys files for untrusted apps
by Jeff Vander Stoep
· 8 years ago
5b4bea4
Create sysfs_dm label.
by Tao Bao
· 8 years ago
62d3b4f
Ensure /sys restrictions for isolated_apps
by Nick Kralevich
· 8 years ago
76d0e41
Remove reboot_data_file.
by Dan Cashman
· 8 years ago
3e60e38
Merge "Revert "Ensure /sys restrictions for isolated_apps""
by Nick Kralevich
· 8 years ago
ae48ecb
Revert "Ensure /sys restrictions for isolated_apps"
by Nick Kralevich
· 8 years ago
eb1ae18
Merge "Ensure /sys restrictions for isolated_apps"
by Treehugger Robot
· 8 years ago
464f59a
Extend access to proc/asound/*
by Tri Vo
· 8 years ago
579366a
Ensure /sys restrictions for isolated_apps
by Nick Kralevich
· 8 years ago
5f85a48
Merge "Add drmserver permission for ephemeral apps"
by Marco Nelissen
· 8 years ago
3235963
Add drmserver permission for ephemeral apps
by Marco Nelissen
· 8 years ago
69ec0f8
Drop isolated_app auditallow rule.
by Nick Kralevich
· 8 years ago
9fdb30f
Merge "Remove surfaceflinger access to sysfs."
by Tri Vo
· 8 years ago
54a2cac
Remove surfaceflinger access to sysfs.
by Tri Vo
· 8 years ago
4680cd9
[RTT2] policy change for Wi-Fi RTT (v2) framework
by Etan Cohen
· 8 years ago
4cc4096
Removing $(PRODUCT_OUT)/root/root
by Bowgo Tsai
· 8 years ago
7d1130f
Fix build.
by Dan Cashman
· 8 years ago
c975bd9
Allow system settings to read /proc/version
by Jeff Vander Stoep
· 8 years ago
91d398d
Sync internal master and AOSP sepolicy.
by Dan Cashman
· 8 years ago
c998f31
Merge "Move Broadcast Radio HAL to a separate binary."
by Tomasz Wasilczyk
· 8 years ago
Next »