- 09b27c7 Add "DO NOT ADD statements" comments to public by Inseob Kim · 1 year, 5 months ago
- 75806ef Minimize public policy by Inseob Kim · 1 year, 5 months ago
- 9ec5327 Add fusefs_type for FUSE filesystems by Thiébaud Weksteen · 4 years, 3 months ago
- aa4ce95 sepolicy: rules for uid/pid cgroups v2 hierarchy by Marco Ballesio · 4 years, 7 months ago
- aa8bb3a Revert^3 "sepolicy: rules for uid/pid cgroups v2 hierarchy" by Marco Ballesio · 4 years, 7 months ago
- a54bed6 Revert^2 "sepolicy: rules for uid/pid cgroups v2 hierarchy" by Marco Ballesio · 4 years, 7 months ago
- 5e6d60a drmserver: audit permissions for /data/app by Jeff Vander Stoep · 4 years, 9 months ago
- 51c04ac Revert "sepolicy: rules for uid/pid cgroups v2 hierarchy" by Jonglin Lee · 4 years, 9 months ago
- f46d7a2 sepolicy: rules for uid/pid cgroups v2 hierarchy by Marco Ballesio · 4 years, 10 months ago
- 832a8a9 mediaserver, mediaextractor, drmserver: allow vendor_overlay_file by Jeongik Cha · 5 years ago
- 353c4ab Allow drmserver to communicate with mediametrics by Robert Shih · 6 years ago
- 8a6cc52 Remove coredomain /dev access no longer needed after Treble by Tri Vo · 7 years ago
- 5e37271 Introduce system_file_type by Nick Kralevich · 7 years ago
- bedfb22 more mmaps by Nick Kralevich · 7 years ago
- 23c9d91 Start partitioning off privapp_data_file from app_data_file by Nick Kralevich · 7 years ago
- f86d54f No access to tee domain over Unix domain sockets by Alex Klyubin · 8 years ago
- 4c40d73 Merge ephemeral data and apk files into app by Chad Brubaker · 9 years ago
- 606d2fd te_macros: introduce add_service() macro by William Roberts · 9 years ago
- d5b6043 more ephemeral_app cleanup by Nick Kralevich · 9 years ago
- 2e00e63 sepolicy: add version_policy tool and version non-platform policy. by dcashman · 9 years ago
- 06cf31e Rename autoplay_app to ephemeral_app by Chad Brubaker · 9 years ago
- cc39f63 Split general policy into public and private components. by dcashman · 9 years ago[Renamed (98%) from drmserver.te]
- 3a0721a mediaserver drmserver: remove domain_deprecated attribute by Jeff Vander Stoep · 9 years ago
- 188f9b1 drmserver: read locked ringtones by Jeff Vander Stoep · 9 years ago
- 7ef8073 audit domain_deprecated perms for removal by Jeff Vander Stoep · 9 years ago
- ae72bf2 Populate autoplay_app with minimal set of permissions by Jeff Vander Stoep · 10 years ago
- d22987b Create attribute for moving perms out of domain by Jeff Vander Stoep · 10 years ago
- 03a6f64 Enforce more specific service access. by dcashman · 10 years ago
- d12993f Add system_api_service and app_api_service attributes. by dcashman · 10 years ago
- 23f3361 Record observed system_server servicemanager service requests. by dcashman · 11 years ago
- 4a89cdf Make system_server_service an attribute. by dcashman · 11 years ago
- cd82557 Restrict service_manager find and list access. by dcashman · 11 years ago
- 4d23729 am ebfd9f87: allow oemfs:dir search by Nick Kralevich · 11 years ago
- ebfd9f8 allow oemfs:dir search by Nick Kralevich · 11 years ago
- e0357cf resolved conflicts for merge of 0a20b57f to lmp-dev-plus-aosp by Vineeta Srivastava · 11 years ago
- 0a20b57 Added sepolicy for oem customization. by Vineeta Srivastava · 11 years ago
- d065f04 Resync lmp-dev-plus-aosp with master by Nick Kralevich · 11 years ago
- 11a29f2 resolved conflicts for merge of 92b9360c to lmp-dev-plus-aosp by Nick Kralevich · 11 years ago
- 70f75ce Add fine grained access control to DrmManagerService. by Riley Spahn · 11 years ago
- bf69632 DO NOT MERGE: Remove service_manager audit_allows. by Riley Spahn · 11 years ago
- 4a24475 Further refined service_manager auditallow statements. by Riley Spahn · 11 years ago
- 603bc20 Further refined service_manager auditallow statements. by Riley Spahn · 11 years ago
- 344fc10 Add access control for each service_manager action. by Riley Spahn · 11 years ago
- b8511e0 Add access control for each service_manager action. by Riley Spahn · 11 years ago
- f90c41f Add SELinux rules for service_manager. by Riley Spahn · 11 years ago
- 3fbc536 Allow reading of radio data files passed over binder. by Stephen Smalley · 11 years ago
- 721f1ad Allow drmserver and mediaserver to read apk files. by Stephen Smalley · 11 years ago
- dc88dca Get rid of separate platform_app_data_file type. by Stephen Smalley · 11 years ago
- 1601132 Clean up socket rules. by Stephen Smalley · 12 years ago
- 48b1883 Introduce asec_public_file type. by Robert Craig · 12 years ago
- 1a1ad95 Revert "Move tlcd_sock policy over to manta." by Nick Kralevich · 12 years ago
- 8cd400d Move tlcd_sock policy over to manta. by Stephen Smalley · 12 years ago
- 7cbe44f drmserver: allow looking in efs_file directories by Nick Kralevich · 12 years ago
- 5eca63f Make drmserver enforcing. by Nick Kralevich · 12 years ago
- e11935d Allow drmserver to unlink old socket file. by Stephen Smalley · 12 years ago
- 623975f Support forcing permissive domains to unconfined. by Nick Kralevich · 12 years ago
- 37339c7 fix mediaserver selinux denials. by Nick Kralevich · 12 years ago
- 3b26848 Confine drmserver, but leave it permissive for now. by Stephen Smalley · 12 years ago
- 353c72e Move unconfined domains out of permissive mode. by Nick Kralevich · 12 years ago
- 77d4731 Make all domains unconfined. by repo sync · 12 years ago
- 50e37b9 Move domains into per-domain permissive mode. by repo sync · 12 years ago
- d381b97 Give the drmserver the ability to connect to the tee. by Geremy Condra · 12 years ago
- 207c709 Allow drmserver to interact with apk_data_file sock_files. by Geremy Condra · 12 years ago
- 03d436a Give drmserver the ability to interact with apk_data_file dirs. by Geremy Condra · 12 years ago
- 8ee4979 Allow drmserver to read the wv keys. by Geremy Condra · 12 years ago
- e69552b Revert "Revert "Various minor policy fixes based on CTS."" by Geremy Condra · 12 years ago
- ba84bf1 Revert "Various minor policy fixes based on CTS." by Geremy Condra · 12 years ago
- 8a814a7 Various minor policy fixes based on CTS. by Stephen Smalley · 12 years ago
- c195ec3 Split internal and external sdcards by William Roberts · 13 years ago
- e07b8a5 Trusted Execution Environment policy. by rpcraig · 13 years ago
- abd977a Additions for grouper/JB by rpcraig · 13 years ago
- c83d008 Policy changes to support running the latest CTS. by Stephen Smalley · 14 years ago
- 2dd4e51 SE Android policy. by Stephen Smalley · 14 years ago