Gitiles
Code Review
Sign In
gerrit.omnirom.org
/
android_system_sepolicy
/
67ed4328eb4835f4404151ee4bbb93d0f4500354
/
private
/
system_server.te
67ed432
SELinux changes for AppFuse
by Risan
· 7 years ago
90cf5a7
same_process_hal_file: access to individual coredomains
by Tri Vo
· 7 years ago
3639f57
Allow system_server to read vendor_file
by Siarhei Vishniakou
· 7 years ago
98de322
Allow zygote to write to statsd and refactor
by Howard Ro
· 7 years ago
44d47c0
Sepolicy for migrating storaged to statsd
by Tej Singh
· 7 years ago
d1b14ab
system_server: add policy for getConnectionOwnerUid API
by Jeff Vander Stoep
· 7 years ago
f8c2c14
Allow stats_companion to register thermal throttling event listener.
by Yangster
· 7 years ago
6cf9160
add links to docs explaining motivations behind neverallow assertions.
by Nick Kralevich
· 7 years ago
dac2a4a
Sepolicy for system suspend HAL.
by Tri Vo
· 7 years ago
383471c
Explicitly allow system_server to (m)map data files
by David Ng
· 7 years ago
c3aec70
Allow signals to hal_graphics_allocator_server
by Chia-I Wu
· 7 years ago
930614c
Start partitioning off privapp_data_file from app_data_file am: 23c9d91b46
by Nick Kralevich
· 7 years ago
23c9d91
Start partitioning off privapp_data_file from app_data_file
by Nick Kralevich
· 7 years ago
98545f0
system_server: allow appending to `debuggerd -j` pipe. am: 5ca755e05e
by Josh Gao
· 7 years ago
5ca755e
system_server: allow appending to `debuggerd -j` pipe.
by Josh Gao
· 7 years ago
67bd625
Make system property audio.camerasound.force a vendor-writable property,
by Eino-Ville Talvala
· 7 years ago
3ac71f8
Make system property audio.camerasound.force a vendor-writable property,
by Eino-Ville Talvala
· 7 years ago
43d2c3d
Add label for time (zone) system properties am: b794ad0f8d
by Neil Fuller
· 7 years ago
b794ad0
Add label for time (zone) system properties
by Neil Fuller
· 7 years ago
6b2715c
Merge "persist.sys.boot.reason is cleared once read by bootstat" am: 752bde548f
by Mark Salyzyn
· 7 years ago
a1bce77
persist.sys.boot.reason is cleared once read by bootstat
by Mark Salyzyn
· 7 years ago
d0c4d4e
mediacodec->mediacodec+hal_omx{,_server,_client} am: 7baf725ea6 am: 6ad7e65447
by Steven Moreland
· 7 years ago
7baf725
mediacodec->mediacodec+hal_omx{,_server,_client}
by Steven Moreland
· 7 years ago
bcb6cc2
Allow system_server to adjust cpuset for media.codec
by Chong Zhang
· 7 years ago
a94441b
Merge "Sepolicy: Fix perfprofd permissions" am: bdac534cc0 am: 09fd609d33
by Andreas Gampe
· 7 years ago
835881a
Sepolicy: Fix perfprofd permissions
by Andreas Gampe
· 7 years ago
91989fc
Merge "Allow system server to write profile snapshots in /data/misc/profman" into pi-dev
by Calin Juravle
· 7 years ago
6ff0f49
Allow system server to write profile snapshots in /data/misc/profman
by Calin Juravle
· 7 years ago
687d5e4
Allow system server to write profile snapshots in /data/misc/profman
by Calin Juravle
· 7 years ago
1279a7a
resolve merge conflicts of bc34fa26acb7ec6ba8749265597b2c3a87397040 to pi-dev-plus-aosp
by Jeff Vander Stoep
· 7 years ago
19a74ec
Put in sepolicies for Codec2.0 services
by Pawin Vongmasa
· 7 years ago
7a4af30
Start the process of locking down proc/net
by Jeff Vander Stoep
· 7 years ago
d7b34a4
sepolicy(hostapd): Add a HIDL interface for hostapd
by Roshan Pius
· 8 years ago
035fcc4
Allow system server to record its own profile
by Calin Juravle
· 7 years ago
6d0b060
Merge "Allow system server to record its own profile" am: 6ff840033c
by Calin Juravle
· 7 years ago
71d8467
Allow system server to record its own profile
by Calin Juravle
· 7 years ago
def10bb
Merge "Sepolicy: Fix system server calling perfprofd" am: fc9afc4d2b
by android-build-prod (mdb)
· 7 years ago
986b9af
Sepolicy: Fix system server calling perfprofd
by Andreas Gampe
· 7 years ago
5afce15
Merge "Audit generic debugfs access for removal" am: 65352c904a am: 810ad5f27b
by android-build-prod (mdb)
· 7 years ago
72edbb3
Audit generic debugfs access for removal
by Jeff Vander Stoep
· 7 years ago
fad90d5
Merge "Allow system_server to adjust cpuset for media.codec" into pi-dev
by Chong Zhang
· 7 years ago
df6d77c
Protect dropbox service data with selinux am: 4d3ee1a5b6 am: 1874950d21
by Jeff Vander Stoep
· 7 years ago
4d3ee1a
Protect dropbox service data with selinux
by Jeff Vander Stoep
· 7 years ago
ec0160a
Allow system_server to adjust cpuset for media.codec
by Chong Zhang
· 7 years ago
0fa3d27
Allowing incidentd to get stack traces from processes.
by Kweku Adams
· 7 years ago
4973325
Allowing incidentd to get stack traces from processes. am: 985db6d8dd
by Kweku Adams
· 7 years ago
985db6d
Allowing incidentd to get stack traces from processes.
by Kweku Adams
· 7 years ago
51ebb60
Remove deprecated tagSocket() permissions am: 0d1e52a50f am: c1753b7a14
by Jeff Vander Stoep
· 7 years ago
0d1e52a
Remove deprecated tagSocket() permissions
by Jeff Vander Stoep
· 7 years ago
bcefa8b
Merge "Update sepolicy to have system_server access stats_data" into pi-dev
by yro
· 7 years ago
199637e
Merge "Update sepolicy to have system_server access stats_data" into pi-dev
by TreeHugger Robot
· 7 years ago
866a240
Merge "Update sepolicy to have system_server access stats_data" am: 8b11302e89
by yro
· 7 years ago
7cacc85
Update sepolicy to have system_server access stats_data
by yro
· 7 years ago
36dd2a4
Update sepolicy to have system_server access stats_data
by yro
· 7 years ago
4be2889
Put in sepolicies for Codec2.0 services
by Pawin Vongmasa
· 7 years ago
4f673cf
Revert "Allow system server to set persist.traced.enable"
by Primiano Tucci
· 7 years ago
88ef20a
Allow system server to access bpf fs
by Chenbo Feng
· 7 years ago
f83bbd1
Allow system server to access bpf fs
by Chenbo Feng
· 7 years ago
0193620
Sepolicy: Give system server fd rights to perfprofd
by Andreas Gampe
· 7 years ago
b506a35
Allow system_server to update timerslack_ns for hal_audio_default
by Mikhail Naganov
· 7 years ago
e6293b1
Allow system_server to update timerslack_ns for hal_audio_default
by Mikhail Naganov
· 7 years ago
c9df843
Sepolicy: Give system server fd rights to perfprofd
by Andreas Gampe
· 7 years ago
6f2040f
Allow system server to set persist.traced.enable
by Hector Dearman
· 7 years ago
6cd70c2
Fix sepolicy for bpf object
by Chenbo Feng
· 8 years ago
bfa95fc
Fix sepolicy for bpf object
by Chenbo Feng
· 8 years ago
a6b8414
Add functionfs access to system_server. am: 1d40154575 am: caf0139b3d
by Jerry Zhang
· 8 years ago
1d40154
Add functionfs access to system_server.
by Jerry Zhang
· 8 years ago
a5b5ab2
Merge "system_server: grant read access to vendor/framework" am: 5b1c3b690d am: d69acbbfb6
by Jeff Vander Stoep
· 8 years ago
9e33565
system_server: grant read access to vendor/framework
by Jeff Vander Stoep
· 8 years ago
869562e
Remove rules for starting the webview_zygote as a child of init.
by Robert Sesek
· 8 years ago
ca4c4e5
Remove rules for starting the webview_zygote as a child of init.
by Robert Sesek
· 8 years ago
febdfa4
SELinux changes to accomodate starting the webview_zygote as a child of the zygote.
by Robert Sesek
· 8 years ago
bacb19b
SELinux changes to accomodate starting the webview_zygote as a child of the zygote.
by Robert Sesek
· 8 years ago
d20e940
Merge "Allow system_server to create files on configfs" am: 17aa011d74 am: 648dd41726
by Niklas Brunlid
· 8 years ago
8e0086a
Allow system_server to create files on configfs
by Niklas Brunlid
· 8 years ago
64f35fa
authsecret HAL policies.
by Andrew Scull
· 8 years ago
1bd6104
Merge "SELinux policies for Perfetto cmdline client (/system/bin/perfetto)" am: 426b1b468b am: ca878c26f6
by Primiano Tucci
· 8 years ago
1a9f4f7
SELinux policies for Perfetto cmdline client (/system/bin/perfetto)
by Primiano Tucci
· 8 years ago
344af22
Merge "Sepolicy: Allow stack dumps of statsd" am: f340d9c0ea am: 4d0e2568ee
by Andreas Gampe
· 8 years ago
7468db6
Sepolicy: Allow stack dumps of statsd
by Andreas Gampe
· 8 years ago
dad1a1e
Merge "sepolicy: restrict access to uid_cpupower files" am: 24e8eff35d am: 6ad9b56176
by Marissa Wall
· 8 years ago
dfe063c
sepolicy: restrict access to uid_cpupower files
by Marissa Wall
· 8 years ago
2a8d4a4
resolve merge conflicts of adb6807daa07f8e84c23b58bfc80b18402fe8ee3 to master
by Dongwon Kang
· 8 years ago
de96242
Selinux permissions for incidentd project am: bc24ba7283 am: 6c112fb3b2
by Yi Jin
· 8 years ago
1134bd0
Allow mediaextractor to load libraries from apk_data_file
by Dongwon Kang
· 8 years ago
bc24ba7
Selinux permissions for incidentd project
by Yi Jin
· 8 years ago
8d11ef5
Merge "authsecret HAL policies."
by Andrew Scull
· 8 years ago
7bee33e
hal_usb_gadget sepolicy
by Badhri Jagan Sridharan
· 8 years ago
9b07889
hal_usb_gadget sepolicy
by Badhri Jagan Sridharan
· 8 years ago
fc81ae5
Merge "system_server: remove access sysfs_devices_system_cpu" am: 3ac8456fed am: 2a29ebac10
by Tri Vo
· 8 years ago
2724e81
Merge "sepolicy(hostapd): Add a HIDL interface for hostapd"
by Roshan Pius
· 8 years ago
35c65c1
system_server: remove access sysfs_devices_system_cpu
by Tri Vo
· 8 years ago
6033cee
Merge "Fix TODOs of duplicate property names for prefix and exact matching" am: 1757417211 am: d90c40a636
by Jaekyun Seok
· 8 years ago
f9d2788
Fix TODOs of duplicate property names for prefix and exact matching
by Jaekyun Seok
· 8 years ago
5bca3e8
sepolicy(hostapd): Add a HIDL interface for hostapd
by Roshan Pius
· 8 years ago
89ea84a
relabel files in /proc/net/xt_qtaguid/ am: 43303c8b89 am: 02dbf4e0a1
by Jeff Vander Stoep
· 8 years ago
43303c8
relabel files in /proc/net/xt_qtaguid/
by Jeff Vander Stoep
· 8 years ago
e0909f4
Merge "Whitelist exported platform properties" am: 70d2bb432a am: 42f8d7b27a
by Jaekyun Seok
· 8 years ago
1aedf4b
authsecret HAL policies.
by Andrew Scull
· 8 years ago
e497145
Whitelist exported platform properties
by Jaekyun Seok
· 8 years ago
Next »