Gitiles
Code Review
Sign In
gerrit.omnirom.org
/
android_system_sepolicy
/
d86a30a273386171a7e58e2411d8a57365af34a3
d86a30a
Add hal_dumpstate attribute.
by Steven Moreland
· 9 years ago
137a13d
healthd: restore healthd sepolicy for charger mode
by Sandeep Patil
· 9 years ago
60e8886
health: add sepolicy for health hal service
by Sandeep Patil
· 9 years ago
82467a9
health: allow rules for passthrough health HAL
by Sandeep Patil
· 9 years ago
dc08245
healthd: create SEPolicy for 'charger' and reduce healthd's scope
by Sandeep Patil
· 9 years ago
59cd88e
Merge "Allow installd to get/set filesystem quotas."
by Jeff Sharkey
· 9 years ago
fe1de04
Allow installd to get/set filesystem quotas.
by Jeff Sharkey
· 9 years ago
a24fae4
Merge "Split mac_permissions.xml into plat and non-plat components."
by Treehugger Robot
· 9 years ago
90b3b94
Split mac_permissions.xml into plat and non-plat components.
by dcashman
· 9 years ago
62f0b8e
Merge "Enforce assumptions around metadata_block_device"
by Treehugger Robot
· 9 years ago
5b8d87b
Merge "All hal policies expressed as attributes."
by Steven Moreland
· 9 years ago
5207ca6
Enforce assumptions around metadata_block_device
by Nick Kralevich
· 9 years ago
0046853
Merge "Allow binder IPC between ephemeral app and appdomain"
by Chad Brubaker
· 9 years ago
bb9a388
Assign a label to the ro.boottime.* properties
by Nick Kralevich
· 9 years ago
641d5d8
Allow binder IPC between ephemeral app and appdomain
by Chad Brubaker
· 9 years ago
d57dd81
Merge "Do not allow new additions to core_property_type"
by Treehugger Robot
· 9 years ago
29eed9f
All hal policies expressed as attributes.
by Steven Moreland
· 9 years ago
d310df2
Do not allow new additions to core_property_type
by Nick Kralevich
· 9 years ago
16c889c
Removing file system remount permission from vold
by Max
· 9 years ago
a95c52e
Add sepolicy for consumerir HIDL HAL
by Connor O'Brien
· 9 years ago
1282df7
Merge "Split policy for on-device compilation."
by Treehugger Robot
· 9 years ago
1faa644
Split policy for on-device compilation.
by dcashman
· 9 years ago
52da39d
Partially revert "mediaprovider" SELinux domain.
by Jeff Sharkey
· 9 years ago
0a80782
Merge changes I1a468e7c,I4d0d8896
by Treehugger Robot
· 9 years ago
35aa81a
Merge "Move MediaProvider to its own domain, add new MtpServer permissions"
by Jerry Zhang
· 9 years ago
02bf4aa
isolated_app.te: Give permissions for using sdcardfs
by Daniel Rosenberg
· 9 years ago
f921dd9
Move MediaProvider to its own domain, add new MtpServer permissions
by Jerry Zhang
· 9 years ago
85e3e7d
hal_wifi: Allow HAL to reload wifi firmware
by Roshan Pius
· 9 years ago
02ed21e
hal_wifi: Allow system_server to access wifi HIDL services
by Roshan Pius
· 9 years ago
9f1e2b5
Merge "Block files without trailing newlines"
by Treehugger Robot
· 9 years ago
cd55e8e
Merge "debuggerd.te: remove domain_deprecated"
by Treehugger Robot
· 9 years ago
2f38ac7
Merge "remove more domain_deprecated"
by Treehugger Robot
· 9 years ago
294d1db
Merge "Move hci_attach to hikey"
by Treehugger Robot
· 9 years ago
16b7f0a
Block files without trailing newlines
by Nick Kralevich
· 9 years ago
cb4f5b3
Merge "installd has moved on to Binder; goodbye socket!"
by Jeff Sharkey
· 9 years ago
4394b2c
Move hci_attach to hikey
by Nick Kralevich
· 9 years ago
b56e6ef
Whitespace fix
by Nick Kralevich
· 9 years ago
6a259cc
remove more domain_deprecated
by Nick Kralevich
· 9 years ago
30603f1
debuggerd.te: remove domain_deprecated
by Nick Kralevich
· 9 years ago
8b1d452
installd has moved on to Binder; goodbye socket!
by Jeff Sharkey
· 9 years ago
3e8dbf0
Restore app_domain macro and move to private use.
by dcashman
· 9 years ago
f016fc1
Merge "Add TCSETS to unpriv_tty_ioctls"
by Treehugger Robot
· 9 years ago
0f80443
Merge "priv_app.te: Drop auditallow app_data_file:file execute"
by Treehugger Robot
· 9 years ago
240f50e
Add TCSETS to unpriv_tty_ioctls
by Nick Kralevich
· 9 years ago
a040aa1
Merge "Restore checkfc and neverallow checks."
by Treehugger Robot
· 9 years ago
57475e5
priv_app.te: Drop auditallow app_data_file:file execute
by Nick Kralevich
· 9 years ago
0779155
Restore checkfc and neverallow checks.
by dcashman
· 9 years ago
23fdf03
Merge "Allow webview_zygote to read/execute installed APKs."
by Treehugger Robot
· 9 years ago
2a0053b
Move sdcardfs media_rw_data_file rules to app.te
by Daniel Rosenberg
· 9 years ago
0c8ad1d
Fix build.
by dcashman
· 9 years ago
e082cdb
Merge remote-tracking branch 'goog/stage-aosp-master' into HEAD
by Bill Yi
· 9 years ago
7256f36
Allow webview_zygote to read/execute installed APKs.
by Torne (Richard Coles)
· 9 years ago
2e00e63
sepolicy: add version_policy tool and version non-platform policy.
by dcashman
· 9 years ago
0fd68b7
Merge "Rules for new installd Binder interface." am: fed665edca
by Jeff Sharkey
· 9 years ago
fed665e
Merge "Rules for new installd Binder interface."
by Jeff Sharkey
· 9 years ago
38cd076
Prevent ptrace of logd on user builds am: cb5f4a3dd8
by Nick Kralevich
· 9 years ago
e160d14
Rules for new installd Binder interface.
by Jeff Sharkey
· 9 years ago
cb5f4a3
Prevent ptrace of logd on user builds
by Nick Kralevich
· 9 years ago
7fb7102
Merge "Revert "ueventd.te: auditallow device:chr_file"" am: 8ee06cc44f
by Nick Kralevich
· 9 years ago
8ee06cc
Merge "Revert "ueventd.te: auditallow device:chr_file""
by Nick Kralevich
· 9 years ago
e78fa1b
Revert "ueventd.te: auditallow device:chr_file"
by Nick Kralevich
· 9 years ago
887f026
Merge "ueventd.te: auditallow device:chr_file" am: 4868f377fa
by Nick Kralevich
· 9 years ago
4868f37
Merge "ueventd.te: auditallow device:chr_file"
by Treehugger Robot
· 9 years ago
6774088
Merge "Allow webview_zygote to stat /sys/kernel/debug/tracing/trace_marker."
by Robert Sesek
· 9 years ago
2c222c1
Merge "Allow webview_zygote to stat /sys/kernel/debug/tracing/trace_marker."
by Treehugger Robot
· 9 years ago
ed0b4eb
ueventd.te: auditallow device:chr_file
by Nick Kralevich
· 9 years ago
5fa3dd0
Merge "auditallow priv_app app_data_file execution" am: a24d7f5392
by Daniel Micay
· 9 years ago
a24d7f5
Merge "auditallow priv_app app_data_file execution"
by Treehugger Robot
· 9 years ago
45c41f3
/dev/port does not seem to be used, adding in rules to confirm. am: c27c23fbdb
by Max
· 9 years ago
c27c23f
/dev/port does not seem to be used, adding in rules to confirm.
by Max
· 9 years ago
758e6b3
auditallow priv_app app_data_file execution
by Daniel Micay
· 9 years ago
2643c6f
Merge "SEPolicy changes for radio hal." am: 65ad9bc1c3
by Amit Mahajan
· 9 years ago
65ad9bc
Merge "SEPolicy changes for radio hal."
by Treehugger Robot
· 9 years ago
b435584
SEPolicy changes for radio hal.
by Amit Mahajan
· 9 years ago
2932497
Allow access to mediaanalytics service am: 090f4a4d9f
by Ray Essick
· 9 years ago
954fc0a
Allow system_server to measure emulated stats. am: 17c675b327
by Jeff Sharkey
· 9 years ago
090f4a4
Allow access to mediaanalytics service
by Ray Essick
· 9 years ago
5af7c66
Allow webview_zygote to stat /sys/kernel/debug/tracing/trace_marker.
by Robert Sesek
· 9 years ago
17c675b
Allow system_server to measure emulated stats.
by Jeff Sharkey
· 9 years ago
2464a49
Merge "Added an auditallow rule to track vold remounting filesystems."
by Max
· 9 years ago
685ef6b
Merge "Added an auditallow rule to track vold remounting filesystems."
by Treehugger Robot
· 9 years ago
1780a62
domain_deprecated.te: remove /proc/net access am: dd649da84b
by Nick Kralevich
· 9 years ago
dd649da
domain_deprecated.te: remove /proc/net access
by Nick Kralevich
· 9 years ago
7aa5caf
dumpstate: talk to vibrator hal am: 839c7ded30
by Steven Moreland
· 9 years ago
314d8c5
Added an auditallow rule to track vold remounting filesystems.
by Max
· 9 years ago
839c7de
dumpstate: talk to vibrator hal
by Steven Moreland
· 9 years ago
e383684
Merge "Allow sdcardd to remount sdcardfs" am: 7b6dbd7360
by Daniel Rosenberg
· 9 years ago
7b6dbd7
Merge "Allow sdcardd to remount sdcardfs"
by Treehugger Robot
· 9 years ago
3e2fed1
Merge "Add permissions for hal_boot" am: 280ba8b712
by Connor O'Brien
· 9 years ago
280ba8b
Merge "Add permissions for hal_boot"
by Connor O'Brien
· 9 years ago
df59b9f
Allow sdcardd to remount sdcardfs
by Daniel Rosenberg
· 9 years ago
191e8b3
Merge "zygote: drop braces on single item rule" am: a8340521e5
by William Roberts
· 9 years ago
a834052
Merge "zygote: drop braces on single item rule"
by Treehugger Robot
· 9 years ago
d9bd9e6
Add directory read permissions to certain domains. am: 49e3588429
by Nick Kralevich
· 9 years ago
49e3588
Add directory read permissions to certain domains.
by Nick Kralevich
· 9 years ago
3f77c68
Merge "system_server: Delete system_file:file execute_no_trans;" am: 8fe7b8d2a7
by Nick Kralevich
· 9 years ago
97aff6a
Merge "Remove domain_deprecated from some domains." am: 2affae65dc
by Nick Kralevich
· 9 years ago
f42128a
Merge "Delete more from domain_deprecated.te" am: fae2794e44
by Nick Kralevich
· 9 years ago
8fe7b8d
Merge "system_server: Delete system_file:file execute_no_trans;"
by Treehugger Robot
· 9 years ago
2affae6
Merge "Remove domain_deprecated from some domains."
by Treehugger Robot
· 9 years ago
Next »