Gitiles
Code Review
Sign In
gerrit.omnirom.org
/
android_system_sepolicy
/
refs/heads/android-15
/
public
/
runas.te
09b27c7
Add "DO NOT ADD statements" comments to public
by Inseob Kim
· 1 year, 5 months ago
75806ef
Minimize public policy
by Inseob Kim
· 1 year, 5 months ago
4ab64c9
Relabel /data/system/packages.list to new type.
by Florian Mayer
· 6 years ago
5e37271
Introduce system_file_type
by Nick Kralevich
· 7 years ago
342362a
sepolicy: grant dac_read_search to domains with dac_override
by Benjamin Gordon
· 7 years ago
9b2e0cb
sepolicy: Add rules for non-init namespaces
by Benjamin Gordon
· 8 years ago
4481b88
Selinux: Give runas permission to read system_data_file links
by Andreas Gampe
· 8 years ago
2cf7fba
domain_deprecate: remove system_data_file access am: 2b75437dc8
by Jeff Vander Stoep
· 8 years ago
2b75437
domain_deprecate: remove system_data_file access
by Jeff Vander Stoep
· 8 years ago
dcec3ee
runas: grant access to seapp_contexts files
by Jeff Vander Stoep
· 8 years ago
ed88246
Avoid audit when running `adb shell -t run-as xxx`. am: 3b7d9e49df
by Yabin Cui
· 8 years ago
3b7d9e4
Avoid audit when running `adb shell -t run-as xxx`.
by Yabin Cui
· 8 years ago
690ab19
Allow run-as to read/write unix_stream_sockets created by adbd. am: 1847a38b4a am: 2394619394
by Yabin Cui
· 8 years ago
1847a38
Allow run-as to read/write unix_stream_sockets created by adbd.
by Yabin Cui
· 8 years ago
76aab82
Move domain_deprecated into private policy
by Jeff Vander Stoep
· 8 years ago
7d6185f
runas: Grant access to seapp_contexts_file
by Jeff Vander Stoep
· 8 years ago
3b97552
allow run-as to carry unix_stream_sockets
by Nick Kralevich
· 9 years ago
cc39f63
Split general policy into public and private components.
by dcashman
· 9 years ago
[Renamed (92%) from runas.te]
1c98332
Leftovers of SELinux policy reload mechanism
by Janis Danisevskis
· 9 years ago
d22987b
Create attribute for moving perms out of domain
by Jeff Vander Stoep
· 10 years ago
8e553a4
runas: don't allow capabilities other than setuid/setgid
by Nick Kralevich
· 10 years ago
dd8571a
allow run-as to access /data/local/tmp
by Nick Kralevich
· 11 years ago
6c9c588
runas: allow pipe communication from the shell
by Nick Kralevich
· 11 years ago
356f4be
Restrict requesting contexts other than policy-defined defaults.
by Stephen Smalley
· 11 years ago
27daf18
Make the runas domain enforcing.
by Stephen Smalley
· 12 years ago
48759ca
Support run-as and ndk-gdb functionality.
by Stephen Smalley
· 12 years ago
353c72e
Move unconfined domains out of permissive mode.
by Nick Kralevich
· 12 years ago
0130154
Make sure exec_type is assigned to all entrypoint types.
by Stephen Smalley
· 12 years ago
77d4731
Make all domains unconfined.
by repo sync
· 12 years ago
7bb2a55
Give domains read access to security_file domain.
by William Roberts
· 12 years ago
74ba8c8
run-as policy fixes.
by Stephen Smalley
· 12 years ago
e884872
Add policy for run-as program.
by Stephen Smalley
· 13 years ago