Gitiles
Code Review
Sign In
gerrit.omnirom.org
/
android_system_sepolicy
/
c7fb2809bff93a003ae7e95b29cb824083d5a63a
c7fb280
Merge "Add more neverallows to app_zygote policy."
by Treehugger Robot
· 7 years ago
6c9d368
Merge "Split system and product sepolicy hashes."
by Tri Vo
· 7 years ago
055286f
Merge "Update sepolicy with new native boot flag for activity_manager"
by Treehugger Robot
· 7 years ago
a1198e5
Merge "Sepolicy: Allow apexd to log to kmsg"
by Andreas Gampe
· 7 years ago
e0bbb9f
Add more neverallows to app_zygote policy.
by Martijn Coenen
· 7 years ago
c5bf4a3
Update sepolicy with new native boot flag for activity_manager
by Ng Zhi An
· 7 years ago
31bd804
Merge "Add sepolicy for simpleperf_app_runner."
by Yabin Cui
· 7 years ago
b761636
Merge "Allow system_server to write to bpf maps"
by Chenbo Feng
· 7 years ago
aada501
Sepolicy: Allow apexd to log to kmsg
by Andreas Gampe
· 7 years ago
0375302
Track SELinux denial caused by webview zygote.
by Torne (Richard Coles)
· 7 years ago
b6388fe
Merge "Allow lazy HAL to run"
by Peter Kalauskas
· 7 years ago
74ea1f2
Merge "Allow dumpstate to write into privileged apps private files"
by Treehugger Robot
· 7 years ago
26d79ed
Merge "gpuservice: allow cmd gpu vkjson in interactive shell"
by Treehugger Robot
· 7 years ago
551eeaf
Merge "Make Android Studio Instant Run work again"
by Treehugger Robot
· 7 years ago
3c3d52e
Allow system_server to write to bpf maps
by Chenbo Feng
· 7 years ago
b1bdbb5
Allow lazy HAL to run
by Peter Kalauskas
· 7 years ago
e5fc21c
Add sepolicy for simpleperf_app_runner.
by Yabin Cui
· 7 years ago
1ab6aff
Allow dumpstate to write into privileged apps private files
by Nikita Ioffe
· 7 years ago
b1f34dd
Merge "Permissions for input_native_boot flags"
by Treehugger Robot
· 7 years ago
3e5668f
Make Android Studio Instant Run work again
by Nick Kralevich
· 7 years ago
6e8191e
gpuservice: allow cmd gpu vkjson in interactive shell
by Yiwei Zhang
· 7 years ago
1824e25
Split system and product sepolicy hashes.
by Tri Vo
· 7 years ago
283761c
Merge "Allow heap profiling of certain app domains on user builds"
by Ryan Savitski
· 7 years ago
1e6055f
Merge "Add selinux policy for Sensors HAL 2.0"
by Treehugger Robot
· 7 years ago
d99018c
Merge "Add ro.surface_flinger.* to property_contexts"
by Treehugger Robot
· 7 years ago
c0c9155
Permissions for input_native_boot flags
by Siarhei Vishniakou
· 7 years ago
0509362
Merge "Fix permissions for bluetooth tethering."
by Remi NGUYEN VAN
· 7 years ago
b8baed8
Add selinux policy for Sensors HAL 2.0
by Brian Stack
· 7 years ago
1b02031
Merge changes from topic "product_mapping_file"
by Tri Vo
· 7 years ago
d71144a
Merge "Clean up server_configurable_flags test prop"
by Hongyi Zhang
· 7 years ago
b9796da
Add ro.surface_flinger.* to property_contexts
by Sundong Ahn
· 7 years ago
f3db008
Clean up server_configurable_flags test prop
by Hongyi Zhang
· 7 years ago
51373ec
Add selinux policy for ext4 fs-verity feature
by Leo Liou
· 7 years ago
ca0690e
Allow heap profiling of certain app domains on user builds
by Ryan Savitski
· 7 years ago
1bbda7e
Initial sepolicy for app_zygote.
by Martijn Coenen
· 7 years ago
44fd885
Fix permissions for bluetooth tethering.
by Remi NGUYEN VAN
· 7 years ago
937e664
Split mapping file into system and product parts
by Tri Vo
· 7 years ago
e68ba59
Rename plat_pub_policy -> pub_policy
by Tri Vo
· 7 years ago
8a2b652
Remove obsolete mapping build rules.
by Tri Vo
· 7 years ago
f8dfb5f
[layout compilation] Modify sepolicy to allow installd to run viewcompiler
by Eric Holk
· 7 years ago
d25f130
Merge "Android.mk: remove some build-log spam"
by Treehugger Robot
· 7 years ago
0f466d7
Merge "Add SELinux policies for blastula pool sockets."
by Christian Wailes
· 7 years ago
e71f4e0
Android.mk: remove some build-log spam
by Jeff Vander Stoep
· 7 years ago
ea8b87f
Merge "Allow installd sufficient permissions to rollback_data_file."
by Narayan Kamath
· 7 years ago
3a7f33b
Merge "rs: add tests to ensure rs cannot abuse app data"
by Jeffrey Vander Stoep
· 7 years ago
a0fb112
Merge "Revoke ftrace selinux access from dumpstate"
by Treehugger Robot
· 7 years ago
1fefa6c
Merge "Add the testharness service to sepolicy rules"
by William Hester
· 7 years ago
561aa01
rs: add tests to ensure rs cannot abuse app data
by Jeff Vander Stoep
· 7 years ago
232f395
Add SELinux policies for blastula pool sockets.
by Chris Wailes
· 7 years ago
7f22034
Merge "gralloc3: add sepolicy for allocator/mapper 3.0"
by Treehugger Robot
· 7 years ago
945f6bd
Merge "recovery: Address the ioctl denials during wiping."
by Treehugger Robot
· 7 years ago
5f486c7
Add the testharness service to sepolicy rules
by William Hester
· 7 years ago
43f0fcf
Merge "Add filemap events for iorapd"
by Treehugger Robot
· 7 years ago
b9114af
Merge "zram: allow zram writeback"
by Jaegeuk Kim
· 7 years ago
5a974a0
Merge "Add sepolicy for BugreportManagerService"
by Nandana Dutt
· 7 years ago
97f5383
gralloc3: add sepolicy for allocator/mapper 3.0
by Marissa Wall
· 7 years ago
82f99db
Add filemap events for iorapd
by Primiano Tucci
· 7 years ago
802cfe0
Allow installd sufficient permissions to rollback_data_file.
by Narayan Kamath
· 7 years ago
33e81a9
Revoke ftrace selinux access from dumpstate
by Primiano Tucci
· 7 years ago
4c3d11c
Add rules for multi-user backup/restore
by Annie Meng
· 7 years ago
5cdd2f5
Add sepolicy for BugreportManagerService
by Nandana Dutt
· 7 years ago
9e332a5
Merge "Add initial sepolicy for app data snapshots."
by Annie Meng
· 7 years ago
5792719
zram: allow zram writeback
by Jaegeuk Kim
· 7 years ago
2d86b65
Merge "Allow netd to write to statsd"
by Frank Li
· 7 years ago
938d0c2
Merge "Allow the kernel to read staging_data_file."
by Treehugger Robot
· 7 years ago
b85acbb
Allow the kernel to read staging_data_file.
by Martijn Coenen
· 7 years ago
80eec38
rs.te: Remove dontaudit statements
by Nick Kralevich
· 7 years ago
2b80559
Merge "app: remove redundant neverallow rule"
by Treehugger Robot
· 7 years ago
2ad229c
Add initial sepolicy for app data snapshots.
by Narayan Kamath
· 7 years ago
980c08c
Allow netd to write to statsd
by lifr
· 7 years ago
6d53efc
sepolicy for gsid
by David Anderson
· 7 years ago
d8bec4a
app: remove redundant neverallow rule
by Jeff Vander Stoep
· 7 years ago
f0dd63d
Merge "Allow lmkd to renice process before killing"
by Wei Wang
· 7 years ago
a2e024f
Merge "Allow NetworkStack to find the telephony service"
by Remi NGUYEN VAN
· 7 years ago
832f8af
recovery: Address the ioctl denials during wiping.
by Tao Bao
· 7 years ago
63f6b9e
Merge "sepolicy: unify *_contexts file install location"
by Tri Vo
· 7 years ago
fae3742
Merge "Allow init to relabel metadata block device."
by Treehugger Robot
· 7 years ago
fd758cb
Allow NetworkStack to find the telephony service
by Remi NGUYEN VAN
· 7 years ago
abeaa3b
Allow lmkd to renice process before killing
by Wei Wang
· 7 years ago
e3d625b
SEPolicy updates for adding native flag namespace(netd).
by chenbruce
· 7 years ago
30207ac
sepolicy: unify *_contexts file install location
by Tri Vo
· 7 years ago
e3ba85c
Allow init to relabel metadata block device.
by Sandeep Patil
· 7 years ago
53f5375
Merge "Allow app to conntect to BufferHub service"
by Jiwen Cai
· 7 years ago
146be01
Merge "Add selinux rules for detachable perfetto process."
by Treehugger Robot
· 7 years ago
0eb6bff
Merge "Allow apexd to also create dirs/files in its storage."
by Dario Freni
· 7 years ago
e17b293
Allow app to conntect to BufferHub service
by Jiwen 'Steve' Cai
· 7 years ago
2075608
Merge changes from topic "bpf-init"
by Joel Fernandes
· 7 years ago
036090d
netdomain: allow node_bind for ping sockets
by Jeff Vander Stoep
· 7 years ago
75448f8
Merge "netdomain: move to public policy"
by Jeffrey Vander Stoep
· 7 years ago
b76a639
Add permissions for bpf.progs_loaded property
by Joel Fernandes
· 7 years ago
147cf64
Allow executing bpfloader from init and modify rules
by Joel Fernandes
· 7 years ago
4bf4788
Assign bpfloader with CAP_SYS_ADMIN
by Joel Fernandes
· 7 years ago
179ada9
Allow apexd to also create dirs/files in its storage.
by Martijn Coenen
· 7 years ago
cb691fb
Merge "Add persist.apexd. property context."
by Martijn Coenen
· 7 years ago
2968496
Merge "Rename ANS to ONS"
by Sooraj Sasindran
· 7 years ago
9c654b7
Merge "Allow fs-verity setup within system_server"
by Treehugger Robot
· 7 years ago
937f256
netdomain: move to public policy
by Jeff Vander Stoep
· 7 years ago
ef6f1b5
Merge "rename rs_data_file to app_exec_data_file"
by Nick Kralevich
· 7 years ago
890186e
Merge "Create System Property to Indicate ANGLE Support"
by Tim Van Patten
· 7 years ago
f99d088
Merge "Camera HAL: Allow minor version changes to camera.provider"
by Treehugger Robot
· 7 years ago
Next »