Gitiles
Code Review
Sign In
gerrit.omnirom.org
/
android_system_sepolicy
/
refs/heads/android-15
/
public
/
lmkd.te
09b27c7
Add "DO NOT ADD statements" comments to public
by Inseob Kim
· 1 year, 5 months ago
75806ef
Minimize public policy
by Inseob Kim
· 1 year, 5 months ago
aa4ce95
sepolicy: rules for uid/pid cgroups v2 hierarchy
by Marco Ballesio
· 4 years, 7 months ago
aa8bb3a
Revert^3 "sepolicy: rules for uid/pid cgroups v2 hierarchy"
by Marco Ballesio
· 4 years, 7 months ago
a54bed6
Revert^2 "sepolicy: rules for uid/pid cgroups v2 hierarchy"
by Marco Ballesio
· 4 years, 7 months ago
51c04ac
Revert "sepolicy: rules for uid/pid cgroups v2 hierarchy"
by Jonglin Lee
· 4 years, 9 months ago
f46d7a2
sepolicy: rules for uid/pid cgroups v2 hierarchy
by Marco Ballesio
· 4 years, 10 months ago
d66fc49
sepolicy: Allow lmkd to communicate with its other instance for reinit
by Suren Baghdasaryan
· 5 years ago
55e5c9b
Move system property rules to private
by Inseob Kim
· 6 years ago
ee57f17
allow init to communicate with lmkd and lmkd to kill native processes
by Suren Baghdasaryan
· 6 years ago
d210b7e
sepolicy: Allow lmkd access to vmstat file
by Suren Baghdasaryan
· 6 years ago
44b0efb
Add TODOs
by Nick Kralevich
· 6 years ago
3cfad10
lmkd: grant access to /proc/lowmemorykiller
by Jim Blackler
· 6 years ago
eff6ddf
Allow lmkd to setched kernel threads
by Wei Wang
· 6 years ago
53065d6
sepolicy: Allow lmkd access to psi procfs nodes
by Suren Baghdasaryan
· 7 years ago
abeaa3b
Allow lmkd to renice process before killing
by Wei Wang
· 7 years ago
98de322
Allow zygote to write to statsd and refactor
by Howard Ro
· 7 years ago
5e37271
Introduce system_file_type
by Nick Kralevich
· 7 years ago
342362a
sepolicy: grant dac_read_search to domains with dac_override
by Benjamin Gordon
· 7 years ago
c8ed855
Selinux: Allow lmkd write access to sys.lmk. properties
by Suren Baghdasaryan
· 7 years ago
76384b3
Selinux: Give lmkd read access to /proc/meminfo
by Suren Baghdasaryan
· 7 years ago
d583e59
lmkd: add live-lock killer daemon
by Mark Salyzyn
· 8 years ago
9b2e0cb
sepolicy: Add rules for non-init namespaces
by Benjamin Gordon
· 8 years ago
a0748a7
Restrict lmkd read access from sysfs_type to sysfs_lowmemorykiller.
by Tri Vo
· 8 years ago
1a05283
Allow lmkd read memcg stats.
by Robert Benea
· 8 years ago
d5b6043
more ephemeral_app cleanup
by Nick Kralevich
· 9 years ago
0fa81a2
Remove domain_deprecated from some domains.
by Nick Kralevich
· 9 years ago
06cf31e
Rename autoplay_app to ephemeral_app
by Chad Brubaker
· 9 years ago
cc39f63
Split general policy into public and private components.
by dcashman
· 9 years ago
[Renamed (97%) from lmkd.te]
9cb9c4b
Merge "fine-grained policy for access to /proc/zoneinfo" am: 89a8ed4e9a
by Nick Kralevich
· 9 years ago
7078e8b
fine-grained policy for access to /proc/zoneinfo
by Daniel Micay
· 9 years ago
11c79b2
lmkd: grant read access to all of /sys
by Jeff Vander Stoep
· 9 years ago
30a3ee4
lmkd: grant read access to all of /sys
by Jeff Vander Stoep
· 9 years ago
7898352
Replace "neverallow domain" by "neverallow *" am: 35a1451430 am: 8f611b6eda
by Nick Kralevich
· 10 years ago
35a1451
Replace "neverallow domain" by "neverallow *"
by Nick Kralevich
· 10 years ago
ae72bf2
Populate autoplay_app with minimal set of permissions
by Jeff Vander Stoep
· 10 years ago
d22987b
Create attribute for moving perms out of domain
by Jeff Vander Stoep
· 10 years ago
cbc5279
More MLS trusted subject/object annotations.
by Stephen Smalley
· 11 years ago
8a5b28d
lmkd: avoid locking libsigchain into memory
by Nick Kralevich
· 11 years ago
6a1405d
lmkd: allow lmkd to lock itself in memory
by Nick Kralevich
· 11 years ago
5329731
lmkd: allow removing cgroups and setting self to SCHED_FIFO
by Colin Cross
· 11 years ago
23a52e6
allow lmkd to kill processes.
by Nick Kralevich
· 12 years ago
24be391
Give lmkd kill capability
by Nick Kralevich
· 12 years ago
1c73a5c
lmkd: add sys_resource
by Nick Kralevich
· 12 years ago
5fa2a19
Make lmkd enforcing.
by Nick Kralevich
· 12 years ago
5467fce
initial lmkd policy.
by Nick Kralevich
· 12 years ago
2561a9a
Make lmkd permissive or unconfined.
by Stephen Smalley
· 12 years ago
2b392fc
Move lmkd into it's own domain.
by Nick Kralevich
· 12 years ago