Gitiles
Code Review
Sign In
gerrit.omnirom.org
/
android_system_sepolicy
/
e1224de04d9c6ea52e753151441cdb378891cf6f
e1224de
Merge "Allow domains to stat filesystems."
by Jeffrey Vander Stoep
· 10 years ago
67d9932
vold launched e2fsck must run in fsck domain
by Jeff Vander Stoep
· 10 years ago
792622c
Merge "fsck: allow e2fsck to stat swap_block_device"
by Jeffrey Vander Stoep
· 10 years ago
fcea726
Allow domains to stat filesystems.
by dcashman
· 10 years ago
d644f26
fsck: allow e2fsck to stat swap_block_device
by Jeff Vander Stoep
· 10 years ago
352e635
Merge "vold: allow execute cp and rm"
by Jeffrey Vander Stoep
· 10 years ago
d1f8f73
vold: allow execute cp and rm
by Jeff Vander Stoep
· 10 years ago
db634aa
Merge "system_app: remove perms to write to system_data_file"
by Jeffrey Vander Stoep
· 10 years ago
540ea53
gpsd: remove domain_deprecated
by Jeff Vander Stoep
· 10 years ago
024dc1c
system_app: remove perms to write to system_data_file
by Jeff Vander Stoep
· 10 years ago
589ffaf
Merge "camera_device: remove typealias"
by Jeffrey Vander Stoep
· 10 years ago
65d364b
Merge "SELinux rule for ro.device_owner and persist.logd.security"
by Rubin Xu
· 10 years ago
0c8286f
SELinux rule for ro.device_owner and persist.logd.security
by Rubin Xu
· 10 years ago
8632b9e
Merge "domain_deprecated.te: drop cache_recovery_file access"
by Nick Kralevich
· 10 years ago
4cd2f53
Merge "priv_app.te: drop auditallows on cache_recovery_file"
by Nick Kralevich
· 10 years ago
527d29a
Merge "kernel.te: drop allow kernel untrusted_app:fd use;"
by Nick Kralevich
· 10 years ago
2309ef8
vold.te: drop allow vold toolbox_exec:file rx_file_perms;
by Nick Kralevich
· 10 years ago
d546473
domain_deprecated.te: drop cache_recovery_file access
by Nick Kralevich
· 10 years ago
b8d794a
priv_app.te: drop auditallows on cache_recovery_file
by Nick Kralevich
· 10 years ago
52e9d04
kernel.te: drop allow kernel untrusted_app:fd use;
by Nick Kralevich
· 10 years ago
c15e103
Merge "camera_device: remove type and add typealias"
by Jeffrey Vander Stoep
· 10 years ago
87a73f1
Merge changes from topic 'fc_sort-2'
by Jeffrey Vander Stoep
· 10 years ago
eed6bbd
Merge "adbd.te: remove allow adbd toolbox_exec:file rx_file_perms"
by Nick Kralevich
· 10 years ago
bc301ca
Merge "ppp.te: Remove allow ppp toolbox_exec:file rx_file_perms;"
by Nick Kralevich
· 10 years ago
24739a6
Merge "netd.te: Remove allow netd toolbox_exec:file rx_file_perms;"
by Nick Kralevich
· 10 years ago
2c10940
racoon.te: Remove allow racoon toolbox_exec:file rx_file_perms;
by Nick Kralevich
· 10 years ago
3351122
netd.te: Remove allow netd toolbox_exec:file rx_file_perms;
by Nick Kralevich
· 10 years ago
815d3c5
ppp.te: Remove allow ppp toolbox_exec:file rx_file_perms;
by Nick Kralevich
· 10 years ago
155e710
adbd.te: remove allow adbd toolbox_exec:file rx_file_perms
by Nick Kralevich
· 10 years ago
49693f1
fc_sort: initial commit
by William Roberts
· 10 years ago
922b4e9
checkfc: do not die on 0 length fc's
by William Roberts
· 10 years ago
5de7574
Merge "Revert "fc_sort: initial commit""
by Jeffrey Vander Stoep
· 10 years ago
b1fb7e4
Revert "fc_sort: initial commit"
by Jeffrey Vander Stoep
· 10 years ago
c68a277
fc_sort: add NOTICE file
by William Roberts
· 10 years ago
2dea452
Merge "fc_sort: initial commit"
by Jeffrey Vander Stoep
· 10 years ago
c29b2fc
drop dhcp auditallow
by Nick Kralevich
· 10 years ago
2fb38fc
Merge "Allow shell to read sysfs dirs."
by Daniel Cashman
· 10 years ago
20fb786
Allow shell to read sysfs dirs.
by dcashman
· 10 years ago
7a46e73
Merge "Allow adbd to pull sepolicy from device."
by Daniel Cashman
· 10 years ago
0fb0ab4
Allow adbd to pull sepolicy from device.
by dcashman
· 10 years ago
3c39194
camera_device: remove typealias
by William Roberts
· 10 years ago
b7aace2
camera_device: remove type and add typealias
by William Roberts
· 10 years ago
f89847a
Remove special case handling of "ro." properties
by Tom Cherry
· 10 years ago
2b935cd
grant appdomain rw perms to tun_device
by Jeff Vander Stoep
· 10 years ago
0d8e9ad
Neverallow isolated and untrusted apps to write system properties
by Johan Redestig
· 10 years ago
29f2e33
Merge "Allows init to send signals."
by Bertrand Simonnet
· 10 years ago
eb6656c
priv_app.te: refine cache_recovery_file auditallow rules
by Nick Kralevich
· 10 years ago
e288cfa
Merge "su.te: drop domain_deprecated and app auditallow rules."
by Nick Kralevich
· 10 years ago
1bd0712
Merge "Allow domain to read symlinks in /sys."
by Daniel Cashman
· 10 years ago
0af2aa0
su.te: drop domain_deprecated and app auditallow rules.
by Nick Kralevich
· 10 years ago
cee7292
Allow domain to read symlinks in /sys.
by dcashman
· 10 years ago
1911c27
app: remove permission to execute gpu_device
by Jeff Vander Stoep
· 10 years ago
34e4da5
Allows init to send signals.
by Bertrand SIMONNET
· 10 years ago
dc37ea7
Remove cache_recovery_file symlink read
by Nick Kralevich
· 10 years ago
29d1468
fc_sort: initial commit
by William Roberts
· 10 years ago
ea0da78
Settings: switch to using ctl.start property instead of exec logcat
by Mark Salyzyn
· 10 years ago
829a749
domain_deprecated.te: Exclude recovery from auditallow for /cache/recovery
by Nick Kralevich
· 10 years ago
956ca4c
untrusted_app: remove mtp_device perms
by Jeff Vander Stoep
· 10 years ago
f02db47
Merge "Add sysfs_batteryinfo label."
by Daniel Cashman
· 10 years ago
751c007
Merge "debuggerd.te: allow debuggerd to drop root."
by Josh Gao
· 10 years ago
a31755f
Add sysfs_batteryinfo label.
by dcashman
· 10 years ago
2b93db7
debuggerd.te: allow debuggerd to drop root.
by Josh Gao
· 10 years ago
f226b0c
Log app access to sysfs for removal.
by dcashman
· 10 years ago
549ccf7
Creates a new permission for /cache/recovery
by Felipe Leme
· 10 years ago
36f255f
Create sysfs_zram label.
by dcashman
· 10 years ago
1e5b7a1
Merge changes from topic 'sepolicy-makefile-cleanup'
by Daniel Cashman
· 10 years ago
97a3921
Minor cleanup to align the content with Master
by Pavlin Radoslavov
· 10 years ago
50a478e
Android.mk: cleanse all set but not unset variables
by William Roberts
· 10 years ago
4674975
Android.mk: clean dependencies and clear variables
by William Roberts
· 10 years ago
a20802d
Add new rules for appfuse.
by Daichi Hirono
· 10 years ago
7fbab48
Merge "Settings: Add option to disable logging"
by Mark Salyzyn
· 10 years ago
8179eb8
Settings: Add option to disable logging
by Mark Salyzyn
· 10 years ago
f8f937a
undeprecate /proc/cpuinfo, more shell permissions
by Nick Kralevich
· 10 years ago
9c5b4a8
shell.te: allow rules before neverallow rules
by Nick Kralevich
· 10 years ago
96b1c9c
neverallow debugfs access
by Nick Kralevich
· 10 years ago
cf7ee8a
Revert "fingerprintd.te: neverallow fingerprint data file access"
by Nick Kralevich
· 10 years ago
604a8ca
fingerprintd.te: neverallow fingerprint data file access
by Nick Kralevich
· 10 years ago
107c553
Add policies for system_server to delete fpdata folder
by Amith Yamasani
· 10 years ago
cb1ab98
sectxfile_nl: fix superfluous dependencies
by William Roberts
· 10 years ago
5beeb81
init.te: allow writing to /sys/kernel/debug/tracing/tracing_on
by Nick Kralevich
· 10 years ago
d48773a
Merge "checkfc: add attribute test"
by Jeffrey Vander Stoep
· 10 years ago
24f62b3
atrace.te: fix /sys/kernel/debug/tracing label
by Nick Kralevich
· 10 years ago
ad3cb39
checkfc: add attribute test
by William Roberts
· 10 years ago
fe12b61
label /sys/kernel/debug/tracing and remove debugfs write
by Nick Kralevich
· 10 years ago
a9bf995
Merge "dumpstate: storage statistics"
by Mark Salyzyn
· 10 years ago
79ecefd
Merge "bluetoothdomain.te: drop allow bluetoothdomain self:socket create_socket_perms;"
by Nick Kralevich
· 10 years ago
d6765a9
Merge "Ensure newlines are added between context config files"
by Nick Kralevich
· 10 years ago
c8801fe
Ensure newlines are added between context config files
by Richard Haines
· 10 years ago
d0113ae
bluetoothdomain.te: drop allow bluetoothdomain self:socket create_socket_perms;
by Nick Kralevich
· 10 years ago
a1f903d
bluetoothdomain.te: drop bluetooth unix_stream_socket auditallow
by Nick Kralevich
· 10 years ago
140a019
dumpstate: storage statistics
by Mark Salyzyn
· 10 years ago
1638208
su.te: dontaudit su property_type:file
by Nick Kralevich
· 10 years ago
4e2d224
Restore sysfs_devices_system_cpu to domain.te
by Nick Kralevich
· 10 years ago
f01453a
Remove core_property_type from ctl_* properties
by Nick Kralevich
· 10 years ago
5a570a4
Remove property read access for non-core properties
by Nick Kralevich
· 10 years ago
5ca5696
Revert "Migrate to upstream policy version 30"
by Jeffrey Vander Stoep
· 10 years ago
7a0b8ef
Merge "Allow update_verifier to access bootctrl_block_device." am: e8b176ed44
by Tao Bao
· 10 years ago
e8b176e
Merge "Allow update_verifier to access bootctrl_block_device."
by Tao Bao
· 10 years ago
637af04
Change /dev/ion from read-only to read-write am: 71fd337f04
by Nick Kralevich
· 10 years ago
71fd337
Change /dev/ion from read-only to read-write
by Nick Kralevich
· 10 years ago
Next »