1. 702797d Add gpu_device access to isolated_compute_app by Sandeep Bandaru · 12 months ago
  2. dbca625 Revert "sepolicy: remove all remaining qtaguid stuff." by Bart Sears · 1 year, 1 month ago
  3. af08bd3 sepolicy: remove all remaining qtaguid stuff. by Maciej Żenczykowski · 1 year, 1 month ago
  4. 09b27c7 Add "DO NOT ADD statements" comments to public by Inseob Kim · 1 year, 5 months ago
  5. 4245d04 Allow system_server access to hidraw devices. by Daniel Norman · 1 year, 9 months ago
  6. 1b2d9de Add rules for reading VM DTBO by vfio_handler by Seungjae Yoo · 2 years, 1 month ago
  7. 825056d Add permission for VFIO device binding by Inseob Kim · 2 years, 1 month ago
  8. 27a8f43 Fix attribute plurals for isolated_compute_allowed by Charles Chen · 2 years, 5 months ago
  9. c8ab359 Move isolated_compute_app to be public by Charles Chen · 2 years, 5 months ago
  10. 63a2104 Set sepolicy for ublk control device and block device by Akilesh Kailash · 2 years, 7 months ago
  11. e7fc603 Merge "Add missing permissions for default bluetooth hal" by Alistair Delva · 2 years, 8 months ago
  12. b5f16b2 Allow mkfs/fsck for zoned block device by Jaegeuk Kim · 2 years, 8 months ago
  13. 9ff3423 Add missing permissions for default bluetooth hal by Henri Chataing · 2 years, 8 months ago
  14. 9bf0a0c Remove some FDE rules and update comments by Eric Biggers · 3 years, 5 months ago
  15. be66c59 SELinux policy for /dev/sys/block/by-name/rootdisk by Jaegeuk Kim · 3 years, 6 months ago
  16. 4374a1f Stop using the bdev_type and sysfs_block_type SELinux attributes by Bart Van Assche · 4 years ago
  17. e3cfa9e Revert "Remove the bdev_type and sysfs_block_type SELinux attributes" by Bart Van Assche · 3 years, 10 months ago
  18. 63930d3 Remove the bdev_type and sysfs_block_type SELinux attributes by Bart Van Assche · 4 years ago
  19. e8739ba Revert "Remove the bdev_type and sysfs_block_type SELinux attributes" by Michał Brzeziński · 3 years, 11 months ago
  20. c50f669 Remove the bdev_type and sysfs_block_type SELinux attributes by Bart Van Assche · 4 years ago
  21. d05534f Add the 'bdev_type' attribute to all block device types by Bart Van Assche · 4 years ago
  22. ec50aa5 Allow the init and apexd processes to read all block device properties by Bart Van Assche · 4 years, 1 month ago
  23. b62be12 Allow apexd to access a new dev_type: virtual disk by Jooyung Han · 4 years, 5 months ago
  24. 225fb93 Make uhid_device an mlstrustedobject by Christine Franks · 4 years, 5 months ago
  25. 10d42ce sepolicy: Add label to userdata file node by Randall Huang · 4 years, 7 months ago
  26. 8c9cf62 Allow coredomain access to only approved categories of vendor heaps by Hridya Valsaraju · 4 years, 9 months ago
  27. 8e307e0 Merge "Make kmsg_device mlstrustedobject." by Alan Stokes · 4 years, 10 months ago
  28. a0518b7 Make kmsg_device mlstrustedobject. by Alan Stokes · 4 years, 11 months ago
  29. fe30369 Add sepolicy for dm-user devices and the snapuserd daemon. by David Anderson · 4 years, 11 months ago
  30. a7cd26e Define a new selinux label for DMABUF system heap by Hridya Valsaraju · 5 years ago
  31. 1a3ee38 Add gnss_device dev_type by Alistair Delva · 5 years ago
  32. ccaaae4 Move usb_serial_device to device.te by chrisweir · 6 years ago
  33. a7f6102 sepolicy: ashmem entry point for libcutils by Tri Vo · 6 years ago
  34. 6557d87 Add sepolicy for installing GSIs to external storage. by David Anderson · 6 years ago
  35. e3ee390 Add super_block_device_type by Yifan Hong · 6 years ago
  36. 02c4c3f Remove sepolicy for /dev/alarm. by Tri Vo · 7 years ago
  37. d918c8d Remove redundant cgroup type/labelings. by Tri Vo · 7 years ago
  38. c7f56cd Remove kmem_device selinux type. by Tri Vo · 7 years ago
  39. ced1751 Remove mtd_device type. by Tri Vo · 7 years ago
  40. b805ada Remove dead *_device types from system sepolicy. by Tri Vo · 7 years ago
  41. 4b26c91 Link to documentation for different block device types by Nick Kralevich · 7 years ago
  42. 4ae8fe9 Define 'super_block_device' type by Hridya Valsaraju · 7 years ago
  43. ea3cf00 Add secure_element_device by Ruchi Kandoi · 8 years ago
  44. 8b5433a Add /dev/__properties__/property_info by Tom Cherry · 8 years ago
  45. 91d398d Sync internal master and AOSP sepolicy. by Dan Cashman · 8 years ago
  46. 94e2a92 Add /dev/kmsg_debug. by Josh Gao · 8 years ago
  47. 9ac5d01 Revert "Add /dev/kmsg_debug." by Josh Gao · 8 years ago
  48. 5dff196 Revert "remove /dev/log" by Tom Cherry · 8 years ago
  49. 8c60f74 remove /dev/log by Tom Cherry · 8 years ago
  50. a015186 Add /dev/kmsg_debug. by Josh Gao · 8 years ago
  51. a8e0f76 Define policy for "loop-control" device. by Jeff Sharkey · 8 years ago
  52. e7d8f4c Initial sepolicy for vndservicemanager. by Martijn Coenen · 8 years ago
  53. 09d13e7 Switch Boot Control HAL policy to _client/_server by Alex Klyubin · 8 years ago
  54. 9e7a5b0 Auditing init and ueventd access to chr device files. by Max Bires · 9 years ago
  55. a3bc3cf Remove support for legacy f_adb interface. by Josh Gao · 9 years ago
  56. c27c23f /dev/port does not seem to be used, adding in rules to confirm. by Max · 9 years ago
  57. 5eadcb8 Collapse urandom_device into random_device by Nick Kralevich · 9 years ago
  58. cc39f63 Split general policy into public and private components. by dcashman · 9 years ago[Renamed from device.te]
  59. c7e6074 Create unique labels for /dev/snd/{seq,timer} by Jeff Vander Stoep · 9 years ago
  60. 6b95239 Initial hardware servicemanager sepolicy. by Martijn Coenen · 9 years ago
  61. 63b33dc Simplify /dev/kmsg SELinux policy. by Elliott Hughes · 9 years ago
  62. 3ba2d46 move gpsd domain to device specific policy by Jeff Vander Stoep · 9 years ago
  63. 68339ac Re-introduce camera_device type by Jeff Vander Stoep · 9 years ago
  64. 3c39194 camera_device: remove typealias by William Roberts · 10 years ago
  65. b7aace2 camera_device: remove type and add typealias by William Roberts · 10 years ago
  66. a20802d Add new rules for appfuse. by Daichi Hirono · 10 years ago
  67. 8eaf258 Allow update_verifier to access bootctrl_block_device. by Tao Bao · 10 years ago
  68. 949d7cb Support fine grain read access control for properties by Tom Cherry · 10 years ago
  69. 59019fd Define the i2C device policy by Bruce Beare · 10 years ago
  70. a10f789 Move update_engine policy to AOSP. by David Zeuthen · 10 years ago
  71. c759489 Label /dev/rtc0 as rtc_device. by dcashman · 10 years ago
  72. a8e073c Create boot_block_device and allow install_recovery read access by Nick Kralevich · 11 years ago
  73. 34d32ea selinux: add pstore by Mark Salyzyn · 11 years ago
  74. 273d7ea Label block devices created or accessed by vold with specific types. by Stephen Smalley · 11 years ago
  75. 206b1a6 Define specific block device types for system and recovery partitions. by Stephen Smalley · 11 years ago
  76. 8a0c25e Do not allow init to execute anything without changing domains. by Stephen Smalley · 11 years ago
  77. dd053a9 Define types for userdata and cache block devices. by Stephen Smalley · 11 years ago
  78. f37ce3f Add support for factory reset protection. by dcashman · 11 years ago
  79. cbc5279 More MLS trusted subject/object annotations. by Stephen Smalley · 11 years ago
  80. d8447fd Typedef+rules for SysSer to access persistent block device by Andres Morales · 11 years ago
  81. 84ed890 Merge adf_device into graphics_device by Nick Kralevich · 11 years ago
  82. 7004789 Add policies for Atomic Display Framework by Greg Hackmann · 11 years ago
  83. 9fc0d40 Label /dev/uio[0-9]* with its own type. by Stephen Smalley · 11 years ago
  84. 0296b94 Move qemud and /dev/qemu policy bits to emulator-specific sepolicy. by Stephen Smalley · 12 years ago
  85. dfef99a Create a label for the root block device. by Robert Craig · 12 years ago
  86. d9b8ef4 Drop legacy device types. by Stephen Smalley · 12 years ago
  87. 3ba9012 Move gpu_device type and rules to core policy. by Stephen Smalley · 12 years ago
  88. b254764 Drop tegra specific label from policy. by Robert Craig · 12 years ago
  89. af47ebb Label /dev/fscklogs and allow system_server access to it. by Stephen Smalley · 12 years ago
  90. 8d68831 Restrict access to /dev/hw_random to system_server and init. by Alex Klyubin · 12 years ago
  91. 77ec892 SELinux policy for users of libcutils klog_write. by Alex Klyubin · 12 years ago
  92. a3f6568 Revert "DO NOT MERGE Split some device nodes out from device." by Ben Murdoch · 12 years ago
  93. 69fbbdd DO NOT MERGE Split some device nodes out from device. by repo sync · 12 years ago
  94. 74ba8c8 run-as policy fixes. by Stephen Smalley · 12 years ago
  95. 507304c Remove unneeded device type. by Robert Craig · 12 years ago
  96. c529c66 Add policy for __properties__ device. by Geremy Condra · 13 years ago
  97. 65d4f44 Various policy updates. by Robert Craig · 12 years ago
  98. f62af81 Introduce security labels for 2 new device nodes. by Robert Craig · 13 years ago
  99. 905e316 Make ion_device mls trusted. by rpcraig · 13 years ago
  100. 18b5f87 racoon policy. by Robert Craig · 13 years ago