1. 09b27c7 Add "DO NOT ADD statements" comments to public by Inseob Kim · 1 year, 5 months ago
  2. 75806ef Minimize public policy by Inseob Kim · 1 year, 5 months ago
  3. 9ec5327 Add fusefs_type for FUSE filesystems by Thiébaud Weksteen · 4 years, 3 months ago
  4. aa4ce95 sepolicy: rules for uid/pid cgroups v2 hierarchy by Marco Ballesio · 4 years, 7 months ago
  5. aa8bb3a Revert^3 "sepolicy: rules for uid/pid cgroups v2 hierarchy" by Marco Ballesio · 4 years, 7 months ago
  6. a54bed6 Revert^2 "sepolicy: rules for uid/pid cgroups v2 hierarchy" by Marco Ballesio · 4 years, 7 months ago
  7. 5e6d60a drmserver: audit permissions for /data/app by Jeff Vander Stoep · 4 years, 9 months ago
  8. 51c04ac Revert "sepolicy: rules for uid/pid cgroups v2 hierarchy" by Jonglin Lee · 4 years, 9 months ago
  9. f46d7a2 sepolicy: rules for uid/pid cgroups v2 hierarchy by Marco Ballesio · 4 years, 10 months ago
  10. 832a8a9 mediaserver, mediaextractor, drmserver: allow vendor_overlay_file by Jeongik Cha · 5 years ago
  11. 353c4ab Allow drmserver to communicate with mediametrics by Robert Shih · 6 years ago
  12. 8a6cc52 Remove coredomain /dev access no longer needed after Treble by Tri Vo · 7 years ago
  13. 5e37271 Introduce system_file_type by Nick Kralevich · 7 years ago
  14. bedfb22 more mmaps by Nick Kralevich · 7 years ago
  15. 23c9d91 Start partitioning off privapp_data_file from app_data_file by Nick Kralevich · 7 years ago
  16. f86d54f No access to tee domain over Unix domain sockets by Alex Klyubin · 8 years ago
  17. 4c40d73 Merge ephemeral data and apk files into app by Chad Brubaker · 9 years ago
  18. 606d2fd te_macros: introduce add_service() macro by William Roberts · 9 years ago
  19. d5b6043 more ephemeral_app cleanup by Nick Kralevich · 9 years ago
  20. 2e00e63 sepolicy: add version_policy tool and version non-platform policy. by dcashman · 9 years ago
  21. 06cf31e Rename autoplay_app to ephemeral_app by Chad Brubaker · 9 years ago
  22. cc39f63 Split general policy into public and private components. by dcashman · 9 years ago[Renamed (98%) from drmserver.te]
  23. 3a0721a mediaserver drmserver: remove domain_deprecated attribute by Jeff Vander Stoep · 9 years ago
  24. 188f9b1 drmserver: read locked ringtones by Jeff Vander Stoep · 9 years ago
  25. 7ef8073 audit domain_deprecated perms for removal by Jeff Vander Stoep · 9 years ago
  26. ae72bf2 Populate autoplay_app with minimal set of permissions by Jeff Vander Stoep · 10 years ago
  27. d22987b Create attribute for moving perms out of domain by Jeff Vander Stoep · 10 years ago
  28. 03a6f64 Enforce more specific service access. by dcashman · 10 years ago
  29. d12993f Add system_api_service and app_api_service attributes. by dcashman · 10 years ago
  30. 23f3361 Record observed system_server servicemanager service requests. by dcashman · 11 years ago
  31. 4a89cdf Make system_server_service an attribute. by dcashman · 11 years ago
  32. cd82557 Restrict service_manager find and list access. by dcashman · 11 years ago
  33. 4d23729 am ebfd9f87: allow oemfs:dir search by Nick Kralevich · 11 years ago
  34. ebfd9f8 allow oemfs:dir search by Nick Kralevich · 11 years ago
  35. e0357cf resolved conflicts for merge of 0a20b57f to lmp-dev-plus-aosp by Vineeta Srivastava · 11 years ago
  36. 0a20b57 Added sepolicy for oem customization. by Vineeta Srivastava · 11 years ago
  37. d065f04 Resync lmp-dev-plus-aosp with master by Nick Kralevich · 11 years ago
  38. 11a29f2 resolved conflicts for merge of 92b9360c to lmp-dev-plus-aosp by Nick Kralevich · 11 years ago
  39. 70f75ce Add fine grained access control to DrmManagerService. by Riley Spahn · 11 years ago
  40. bf69632 DO NOT MERGE: Remove service_manager audit_allows. by Riley Spahn · 11 years ago
  41. 4a24475 Further refined service_manager auditallow statements. by Riley Spahn · 11 years ago
  42. 603bc20 Further refined service_manager auditallow statements. by Riley Spahn · 11 years ago
  43. 344fc10 Add access control for each service_manager action. by Riley Spahn · 11 years ago
  44. b8511e0 Add access control for each service_manager action. by Riley Spahn · 11 years ago
  45. f90c41f Add SELinux rules for service_manager. by Riley Spahn · 11 years ago
  46. 3fbc536 Allow reading of radio data files passed over binder. by Stephen Smalley · 11 years ago
  47. 721f1ad Allow drmserver and mediaserver to read apk files. by Stephen Smalley · 11 years ago
  48. dc88dca Get rid of separate platform_app_data_file type. by Stephen Smalley · 11 years ago
  49. 1601132 Clean up socket rules. by Stephen Smalley · 12 years ago
  50. 48b1883 Introduce asec_public_file type. by Robert Craig · 12 years ago
  51. 1a1ad95 Revert "Move tlcd_sock policy over to manta." by Nick Kralevich · 12 years ago
  52. 8cd400d Move tlcd_sock policy over to manta. by Stephen Smalley · 12 years ago
  53. 7cbe44f drmserver: allow looking in efs_file directories by Nick Kralevich · 12 years ago
  54. 5eca63f Make drmserver enforcing. by Nick Kralevich · 12 years ago
  55. e11935d Allow drmserver to unlink old socket file. by Stephen Smalley · 12 years ago
  56. 623975f Support forcing permissive domains to unconfined. by Nick Kralevich · 12 years ago
  57. 37339c7 fix mediaserver selinux denials. by Nick Kralevich · 12 years ago
  58. 3b26848 Confine drmserver, but leave it permissive for now. by Stephen Smalley · 12 years ago
  59. 353c72e Move unconfined domains out of permissive mode. by Nick Kralevich · 12 years ago
  60. 77d4731 Make all domains unconfined. by repo sync · 12 years ago
  61. 50e37b9 Move domains into per-domain permissive mode. by repo sync · 12 years ago
  62. d381b97 Give the drmserver the ability to connect to the tee. by Geremy Condra · 12 years ago
  63. 207c709 Allow drmserver to interact with apk_data_file sock_files. by Geremy Condra · 12 years ago
  64. 03d436a Give drmserver the ability to interact with apk_data_file dirs. by Geremy Condra · 12 years ago
  65. 8ee4979 Allow drmserver to read the wv keys. by Geremy Condra · 12 years ago
  66. e69552b Revert "Revert "Various minor policy fixes based on CTS."" by Geremy Condra · 12 years ago
  67. ba84bf1 Revert "Various minor policy fixes based on CTS." by Geremy Condra · 12 years ago
  68. 8a814a7 Various minor policy fixes based on CTS. by Stephen Smalley · 12 years ago
  69. c195ec3 Split internal and external sdcards by William Roberts · 13 years ago
  70. e07b8a5 Trusted Execution Environment policy. by rpcraig · 13 years ago
  71. abd977a Additions for grouper/JB by rpcraig · 13 years ago
  72. c83d008 Policy changes to support running the latest CTS. by Stephen Smalley · 14 years ago
  73. 2dd4e51 SE Android policy. by Stephen Smalley · 14 years ago