- c2449d3 Revert "Update netlink_audit_socket for nlmsg xperm" by Bo Hu · 9 months ago
- aa57726 Revert "Update netlink_tcpdiag_socket for nlmsg xperm" by Bo Hu · 9 months ago
- b55aaff Revert "Update netlink_xfrm_socket for nlmsg xperm" by Bo Hu · 9 months ago
- fa1b5c7 Revert "Update netlink_route_socket for nlmsg xperm" by Bo Hu · 9 months ago
- dd25127 Update netlink_route_socket for nlmsg xperm by Thiébaud Weksteen · 11 months ago
- eb4cc3e Update netlink_xfrm_socket for nlmsg xperm by Thiébaud Weksteen · 11 months ago
- 67c1b35 Update netlink_tcpdiag_socket for nlmsg xperm by Thiébaud Weksteen · 11 months ago
- 5bc9bb8 Update netlink_audit_socket for nlmsg xperm by Thiébaud Weksteen · 12 months ago
- 48966b6 Add plumbing for new tee_service_contexts by Nikita Ioffe · 11 months ago
- 113f4d6 Reapply "Expose starting_at_board_api to access_vectors" by Inseob Kim · 1 year, 2 months ago
- d0c0e15 Revert "Expose starting_at_board_api to access_vectors" by Thiébaud Weksteen · 1 year, 2 months ago
- 747f589 Expose starting_at_board_api to access_vectors by Thiébaud Weksteen · 1 year, 2 months ago
- 6772c50 Define new kernel security classes by Thiébaud Weksteen · 1 year, 4 months ago
- 92ca7b7 Stop granting permission to report_off_body to keystore2 by Eric Biggers · 1 year, 6 months ago
- 038f859 Add new keystore2 permission get_last_auth_time. by James Willcox · 1 year, 11 months ago
- 214294c Add SELinux Policy For io_uring by Gil Cukierman · 2 years, 10 months ago
- e5010a2 Remove key migration related changes by John Wu · 3 years, 6 months ago
- f412c13 Revert "Remove key migration related changes" by Thiébaud Weksteen · 3 years, 2 months ago
- 65dcdf2 Remove key migration related changes by John Wu · 3 years, 6 months ago
- 3da8416 Revert "Revert "Revert "Remove key migration related changes""" by John Wu · 3 years, 3 months ago
- 82c4d9b Revert "Revert "Remove key migration related changes"" by John Wu · 3 years, 3 months ago
- e27f954 Revert "Remove key migration related changes" by John Wu · 3 years, 3 months ago
- cabed18 Remove key migration related changes by John Wu · 3 years, 6 months ago
- 7e95d22 Add keystore2 permission to get attestation keys by Seth Moore · 3 years, 9 months ago
- 1b0415f Merge changes I74797b13,I5d0b06e3 by Treehugger Robot · 3 years, 10 months ago
- 2b6c606 Diced: Add policy for diced the DICE daemon. by Janis Danisevskis · 3 years, 10 months ago
- 4184373 Define and add the migrate_any_key permission to system_server by Ashwini Oruganti · 3 years, 10 months ago
- bf29c3a Allow vold to deleteAllKeys in Keystore by Paul Crowley · 4 years, 1 month ago
- ea5460a untrusted_app_30: add new targetSdk domain by Bram Bonné · 4 years, 4 months ago
- 4334d35 Add keystore permission for metrics re-routing. by Hasini Gunasinghe · 4 years, 3 months ago
- f6fc937 Revert "untrusted_app_30: add new targetSdk domain" by Paul Hobbs · 4 years, 2 months ago
- 55badc2 untrusted_app_30: add new targetSdk domain by Bram Bonné · 4 years, 4 months ago
- 45ed18d Merge "Keystore 2.0: Add early_boot_ended permission" by Satya Tangirala · 4 years, 6 months ago
- 23d9de7 Merge "Keystore 2.0: Add report_off_body access vector." by Janis Danisevskis · 4 years, 6 months ago
- 5ef8686 Keystore 2.0: Add early_boot_ended permission by Satya Tangirala · 4 years, 6 months ago
- 7ca6b48 Keystore 2.0: Add report_off_body access vector. by Janis Danisevskis · 4 years, 6 months ago
- 0653374 Add convert_storage_key_to_ephemeral to keystore2_key access vector by Satya Tangirala · 4 years, 6 months ago
- baf84ee Merge "Add SELinux policy for using userfaultfd" by Treehugger Robot · 4 years, 6 months ago
- 06edcd8 Add SELinux policy for using userfaultfd by Lokesh Gidra · 4 years, 6 months ago
- db88d15 Add get_auth_token permission to allow credstore to call keystore2. by Hasini Gunasinghe · 4 years, 9 months ago
- 685ca0c Keystore 2.0: Add permissions and policy for user manager AIDL. by Hasini Gunasinghe · 4 years, 7 months ago
- 144c822 Move list permission from keystore2_key to keystore class. by Janis Danisevskis · 5 years ago
- 24f3dce Add security class keystore2_key. by Janis Danisevskis · 5 years ago
- 178f0ac Add new perfmon capability2 and use it by Alistair Delva · 5 years ago
- e4686b4 access_vectors: add lockdown class by Nick Kralevich · 6 years ago
- 73ed785 Merge "access_vectors: remove flow_in and flow_out permissions from packet class" by Treehugger Robot · 6 years ago
- 8715460 access_vectors: remove incorrect comment about mac_admin by Stephen Smalley · 6 years ago
- 51ed2f9 access_vectors: remove flow_in and flow_out permissions from packet class by Stephen Smalley · 6 years ago
- cd62a4a access_vectors: re-organize common file perms by Stephen Smalley · 6 years ago
- 80640c5 perf_event: define security class and access vectors by Ryan Savitski · 6 years ago
- fb69c8e netlink_route_socket: add new nlmsg_readpriv perm by Jeff Vander Stoep · 6 years ago
- dddbaaf update sepolicy for fs notification hooks by Nick Kralevich · 6 years ago
- ea1775d Update access_vectors by Nick Kralevich · 7 years ago
- f5a1b1b Move class bpf definition by Nick Kralevich · 7 years ago
- 1b1d133 Add nnp_nosuid_transition policycap and related class/perm definitions. by Nick Kralevich · 7 years ago
- 08f92f9 sepolicy: New sepolicy classes and rules about bpf object by Chenbo Feng · 8 years ago
- 9fbc408 sepolicy: Define validate_trans permission am: 509923116f by Stephen Smalley · 8 years ago
- 90f46dd Merge "sepolicy: Define and allow map permission" am: 770214abda by Stephen Smalley · 8 years ago
- 5099231 sepolicy: Define validate_trans permission by Stephen Smalley · 8 years ago
- 4397f08 sepolicy: Define and allow map permission by Stephen Smalley · 8 years ago
- 52909ac Define smc_socket security class. am: 2be9799bcc by Stephen Smalley · 8 years ago
- a77096b Merge "Define getrlimit permission for class process" am: e02e0ad1cc by Stephen Smalley · 8 years ago
- 2be9799 Define smc_socket security class. by Stephen Smalley · 8 years ago
- 91a3eea Define getrlimit permission for class process by Stephen Smalley · 8 years ago
- 2f1c7ba Remove vndservice_manager object classes. by Dan Cashman · 8 years ago
- a0c7f01 Add keystore_key:attest_unique_id to priv_app. by Shawn Willden · 8 years ago
- bc6d88d Add new classes and types for (hw|vnd)servicemanager. by Martijn Coenen · 8 years ago
- 4921085 Remove obsolete netlink_firewall_socket and netlink_ip6fw_socket classes. by Stephen Smalley · 9 years ago
- 431bdd9 Define extended_socket_class policy capability and socket classes by Stephen Smalley · 9 years ago
- 8a00360 Define the user namespace capability classes and access vectors. by Stephen Smalley · 9 years ago
- cb3eb4e Introduce crash_dump debugging helper. by Josh Gao · 9 years ago
- 11dc03e access_vectors: Remove unused permission definitions by Nick Kralevich · 9 years ago
- cc39f63 Split general policy into public and private components. by dcashman · 9 years ago[Renamed from access_vectors]
- a16b058 Add module_load permission to system class by Jeff Vander Stoep · 9 years ago
- 01d95c2 Update netlink socket classes. by Stephen Smalley · 10 years ago
- 3198cb5 Add audit_read permission to capability2 by Woojung Min · 10 years ago
- e8178b3 Remove unused userspace security classes. by Stephen Smalley · 10 years ago
- cbc8f79 Rename keystore methods and delete unused permissions by Chad Brubaker · 10 years ago
- 520bb81 Add keystore user_changed permission by Chad Brubaker · 10 years ago
- 8927772 Add keystore add_auth by Chad Brubaker · 10 years ago
- 8f81dca Only allow system_server to send commands to zygote. by dcashman · 11 years ago
- 72acd6b Allow system reset_uid, sync_uid, password_uid by Robin Lee · 11 years ago
- 70f75ce Add fine grained access control to DrmManagerService. by Riley Spahn · 11 years ago
- ba99249 Define debuggerd class, permissions, and rules. by Stephen Smalley · 11 years ago
- b8511e0 Add access control for each service_manager action. by Riley Spahn · 11 years ago
- 1196d2a Adding policies for KeyStore MAC. by Riley Spahn · 11 years ago
- f90c41f Add SELinux rules for service_manager. by Riley Spahn · 11 years ago
- d7af45d add attach_queue to tun_socket by Nick Kralevich · 11 years ago
- c4db82c Remove specifycapabilities permission. by dcashman · 11 years ago
- 9ce99e3 Update binder-related policy. by Stephen Smalley · 13 years ago
- a1ce2fa Define wake_alarm and block_suspect capabilities. by Stephen Smalley · 13 years ago
- 124720a Add policy for property service. by Stephen Smalley · 13 years ago
- 2dd4e51 SE Android policy. by Stephen Smalley · 14 years ago