Gitiles
Code Review
Sign In
gerrit.omnirom.org
/
android_system_sepolicy
/
5da7200510b67712c3e337cf72d68eef9ca3ba76
/
private
5da7200
Separate product_property_contexts out of system sepolicy.
by Tri Vo
· 7 years ago
ade7416
Separate product_hwservice_contexts out of system sepolicy.
by Tri Vo
· 7 years ago
9f343b3
Allow system_server to read apex_data_file.
by Narayan Kamath
· 7 years ago
4d399f6
Merge "SEPolicy for Staged Installs."
by Dario Freni
· 7 years ago
274c1de
SEPolicy for Staged Installs.
by Dario Freni
· 7 years ago
34bd20f
Merge "Un-revert "Audit execution of app_data_file native code.""
by Treehugger Robot
· 7 years ago
007586d
Allow adbd to use a socket transferred from shell.
by Alex Buynytskyy
· 7 years ago
c6cbead
Un-revert "Audit execution of app_data_file native code."
by Alan Stokes
· 7 years ago
df9d783
sepolicy for vendor overlay
by Justin Yun
· 7 years ago
893272d
Added placeholder SELinux policy for the biometric face HAL.
by Zachary Iqbal
· 7 years ago
ca86169
Revert "Add StagingManager service."
by Dario Freni
· 7 years ago
9eb3b8f
Add StagingManager service.
by Dario Freni
· 7 years ago
09c8673
Merge "Add selinux policy for new SensorPrivacyService"
by Michael Groover
· 7 years ago
9c9eb2d
Merge "sepolicy: Add "rs" and "rs_exec" to public policy"
by Treehugger Robot
· 7 years ago
65a89c1
Revert "remove app_data_file execute"
by Nick Kralevich
· 7 years ago
fa3eb77
Revert "Audit execution of app_data_file native code."
by Nick Kralevich
· 7 years ago
a34cfe7
sepolicy: Add "rs" and "rs_exec" to public policy
by Emilian Peev
· 7 years ago
49ff99f
Merge "Make heapprofd work with MLS."
by Florian Mayer
· 7 years ago
23e1f4c
Make heapprofd work with MLS.
by Florian Mayer
· 7 years ago
47c2dee
Add selinux policies for network stack service
by Remi NGUYEN VAN
· 7 years ago
41b6263
Merge "sepolicy changes for network stack app"
by Remi NGUYEN VAN
· 7 years ago
36f93d0
Merge "Allow apexd to write to sysfs loop device parameters."
by Martijn Coenen
· 7 years ago
5f3ba92
sepolicy changes for network stack app
by Remi NGUYEN VAN
· 7 years ago
d7bf921
Allow apexd to write to sysfs loop device parameters.
by Martijn Coenen
· 7 years ago
5cbe41b
rs.te: Allow following /data/user/0 symlink
by Nick Kralevich
· 7 years ago
3361ec4
Separate product_file_contexts out of system sepolicy.
by Tri Vo
· 7 years ago
ac1a0a7
Adding policy for content suggestions.
by Winson Chung
· 7 years ago
b209cb9
Merge "Allow to signal perfetto from shell."
by Treehugger Robot
· 7 years ago
784c2b8
Create new permissionmgr_service
by Todd Kennedy
· 7 years ago
98c6b33
Merge "SELinux policy for rss_hwm_reset"
by Treehugger Robot
· 7 years ago
344e87c
Merge "Audit execution of app_data_file native code."
by Alan Stokes
· 7 years ago
151c7cd
Merge "Allow apexd to flush block devices."
by Martijn Coenen
· 7 years ago
4e1c576
SELinux policy for rss_hwm_reset
by Rafal Slawik
· 7 years ago
0f45683
DO NOT MERGE - Renamed "intelligence" to "content_capture"
by Felipe Leme
· 7 years ago
8904147
Audit execution of app_data_file native code.
by Alan Stokes
· 7 years ago
558c1b8
Allow apexd to flush block devices.
by Martijn Coenen
· 7 years ago
aeca04b
Allow to signal perfetto from shell.
by Florian Mayer
· 7 years ago
2bac81d
Allow zygote to create files at /mnt/user/.*
by Sudheer Shanka
· 7 years ago
42abd42
Merge "remove app_data_file execute"
by Treehugger Robot
· 7 years ago
f523218
Merge "bless app created renderscript files"
by Treehugger Robot
· 7 years ago
b362474
remove app_data_file execute
by Nick Kralevich
· 7 years ago
0eb0a16
bless app created renderscript files
by Nick Kralevich
· 7 years ago
c32ca90
Add persist.heapprofd.enable property.
by Florian Mayer
· 7 years ago
2a2d638
New system service: app_prediction_service
by Sunny Goyal
· 7 years ago
144607d
Merge "Remove unused bufferhub sepolicy"
by Fan Xu
· 7 years ago
65b9e66
Merge "Add power.stats HAL 1.0 sepolicy"
by Benjamin Schwartz
· 7 years ago
a939eca
Merge changes I8a42dc04,Iddddb77e
by Wei Wang
· 7 years ago
8c8eb69
Revert "Move thermal service into system_server"
by Wei Wang
· 7 years ago
2169472
Merge changes I977530a9,Iafb376e6
by Wei Wang
· 7 years ago
76d7046
Allow the Traceur app to start Perfetto.
by Carmen Jackson
· 7 years ago
461d91f
Move thermal service into system_server
by Wei Wang
· 7 years ago
e7040ea
Add power.stats HAL 1.0 sepolicy
by Benjamin Schwartz
· 7 years ago
ffffed2
Remove unused bufferhub sepolicy
by Fan Xu
· 7 years ago
b1553b7
Merge "SEPolicy updates for DeviceConfig Service."
by Matt Pape
· 7 years ago
720841c
Merge "Remove redundant entries from genfs_contexts."
by Alan Stokes
· 7 years ago
6aa4452
SEPolicy updates for DeviceConfig Service.
by Matt Pape
· 7 years ago
80cb74c
Remove redundant entries from genfs_contexts.
by Alan Stokes
· 7 years ago
4802cbd
traced_probes: Read tracefs directories in userdebug
by Hector Dearman
· 7 years ago
69dc264
Merge "Abolish calls to shell in vold"
by Paul Crowley
· 7 years ago
5aacdbc
Merge "Remove sepolicy for /dev/alarm."
by Treehugger Robot
· 7 years ago
4887b86
Merge "Allow dumpstate to call idmap over binder"
by Treehugger Robot
· 7 years ago
51c3eb6
Merge "Allow heapprofd to read system_file_type."
by Treehugger Robot
· 7 years ago
02c4c3f
Remove sepolicy for /dev/alarm.
by Tri Vo
· 7 years ago
657470a
Allow dumpstate to call idmap over binder
by Joel Galenson
· 7 years ago
de3a3e4
Allow dumpstate to dump incidentd
by Mike Ma
· 7 years ago
3350a79
Merge "Track add of RuntimeService in system server"
by Neil Fuller
· 7 years ago
90760a9
Merge "Track isolated_app app_data_file SELinux denial."
by Treehugger Robot
· 7 years ago
cc18ba7
Merge "Allow apexd to label apk_tmp_file to apex_data_file"
by Treehugger Robot
· 7 years ago
22f8669
Track isolated_app app_data_file SELinux denial.
by felkachang
· 7 years ago
f58b555
Track add of RuntimeService in system server
by Neil Fuller
· 7 years ago
353b93a
Allow traced_probes to access battery coulomb counters
by Primiano Tucci
· 7 years ago
3f8c271
Allow heapprofd to read system_file_type.
by Florian Mayer
· 7 years ago
ce15e5e
Allow apexd to label apk_tmp_file to apex_data_file
by Jiyong Park
· 7 years ago
bd0fa53
Merge "SEPolicy changes to allow kcov access in userdebug."
by Treehugger Robot
· 7 years ago
5ea85b5
Merge "Add placeholder iris and face policy for vold data directory"
by Kevin Chyn
· 7 years ago
f0c411c
Merge "Add public Codec2 HIDL interfaces"
by Treehugger Robot
· 7 years ago
f9f7539
Abolish calls to shell in vold
by Paul Crowley
· 7 years ago
91c2580
Add placeholder iris and face policy for vold data directory
by Kevin Chyn
· 7 years ago
55d9096
SEPolicy changes to allow kcov access in userdebug.
by Dan Austin
· 7 years ago
44ffb0b
Merge "system_server: Allow binder connections to iorapd"
by Treehugger Robot
· 7 years ago
7d9d64d
Add public Codec2 HIDL interfaces
by Pawin Vongmasa
· 7 years ago
2725edc
Wider neverallow rules for coredomain /dev access.
by Tri Vo
· 7 years ago
68b2f98
system_server: Allow binder connections to iorapd
by Igor Murashkin
· 7 years ago
9cded32
Merge "Remove coredomain /dev access no longer needed after Treble"
by Tri Vo
· 7 years ago
ad16547
Merge "Allow init to set powerctl property"
by Treehugger Robot
· 7 years ago
196b12e
Track isolated_app SELinux denial.
by felkachang
· 7 years ago
8a6cc52
Remove coredomain /dev access no longer needed after Treble
by Tri Vo
· 7 years ago
1e5021c
Move some rules around
by Nick Kralevich
· 7 years ago
b1dad09
Allow heap profiling everything except TCB on userdebug.
by Florian Mayer
· 7 years ago
ea9cf81
Merge "Add rules to dump health traces"
by Yifan Hong
· 7 years ago
b2d0d4a
Merge "[gpuservice] allow "adb shell cmd gpu vkjson""
by Treehugger Robot
· 7 years ago
0d53ef2
Add rules to dump health traces
by Yifan Hong
· 7 years ago
ff0f79c
[gpuservice] allow "adb shell cmd gpu vkjson"
by Yiwei Zhang
· 7 years ago
d36b1d5
Allow init to set powerctl property
by Branden Archer
· 7 years ago
b61ac07
grant system_server read permission of server_configurable_flags_data
by Hongyi Zhang
· 7 years ago
d81a36a
Merge "Allow audioserver to access persist.log.tag"
by Mikhail Naganov
· 7 years ago
bffe163
SELinux policy for new managed system update APIs
by Neda Topoljanac
· 7 years ago
bacf448
allow system_server BLKSECDISCARD BLKDISCARD
by Nick Kralevich
· 7 years ago
cfe1bae
place dex2oat auditallow statements in userdebug_or_eng blocks
by Nick Kralevich
· 7 years ago
c7be91d
Merge "Allow webview_zygote to JIT."
by Nicolas Geoffray
· 7 years ago
Next »