Gitiles
Code Review
Sign In
gerrit.omnirom.org
/
android_system_sepolicy
/
refs/heads/android-16
/
private
/
su.te
439563f
Add basic sepolicy for the IVmCapabilities HAL
by Nikita Ioffe
· 9 months ago
f5ff3eb
SePolicy rules for initial media quality HAL service
by Haofan Wang
· 11 months ago
75806ef
Minimize public policy
by Inseob Kim
· 1 year, 5 months ago
98b3e4b
Allow permissive MTE to be set by non-root users
by Mitch Phillips
· 1 year, 6 months ago
8b4d612
Allow su to access virtualization
by Alan Stokes
· 1 year, 9 months ago
55d808c
Start using virtmgr for running VMs
by David Brazdil
· 2 years, 9 months ago
56af9a2
Add property for MTE permissive mode.
by Florian Mayer
· 3 years, 4 months ago
8f75f76
Permissions for odrefresh and /data/misc/apexdata/com.android.art
by Orion Hodson
· 5 years ago
d3451f8
Add `su_key`, a keystore2_key namespace for `su`.
by Janis Danisevskis
· 5 years ago
1a9f4f7
SELinux policies for Perfetto cmdline client (/system/bin/perfetto)
by Primiano Tucci
· 8 years ago
35e9239
whitespace fix.
by Nick Kralevich
· 8 years ago
6b558dc
su and perfprofd are coredomain too
by Alex Klyubin
· 8 years ago
41f93db
Add incident command and incidentd daemon se policy.
by Joe Onorato
· 9 years ago
3e8dbf0
Restore app_domain macro and move to private use.
by dcashman
· 9 years ago
2e00e63
sepolicy: add version_policy tool and version non-platform policy.
by dcashman
· 9 years ago
cc39f63
Split general policy into public and private components.
by dcashman
· 9 years ago
[Renamed from su.te]
fc9e8e2
Allow manual /postinstall loopback mounting on debug builds.
by Alex Deymo
· 9 years ago
0af2aa0
su.te: drop domain_deprecated and app auditallow rules.
by Nick Kralevich
· 10 years ago
1638208
su.te: dontaudit su property_type:file
by Nick Kralevich
· 10 years ago
d22987b
Create attribute for moving perms out of domain
by Jeff Vander Stoep
· 10 years ago
aa0d8fe
dontaudit su servicemanager:service_manager list
by Nick Kralevich
· 10 years ago
eab26fa
Remove service_manager_local_audit_domain.
by dcashman
· 10 years ago
85416e0
su.te: add filesystem dontaudit rule
by Nick Kralevich
· 10 years ago
28ddd10
su: don't auditallow service_manager for su
by Nick Kralevich
· 11 years ago
5ec38c4
Dumpstate runs the same from shell as service.
by Christopher Ferris
· 11 years ago
bf254b4
su.te: suppress service_manager related denials.
by Nick Kralevich
· 11 years ago
b54f92b
make su an mlstrustedsubject
by Nick Kralevich
· 11 years ago
213bb45
Tweak rules for su domain.
by Nick Kralevich
· 11 years ago
af7deff
dontaudit su
by Nick Kralevich
· 11 years ago
bc32018
Make su a net domain.
by Sreeram Ramachandran
· 11 years ago
b3cb969
Clarify init_shell, shell, and su domain usage.
by Stephen Smalley
· 12 years ago
116a20f
debuggerd: Allow "debug.db.uid" usage
by Nick Kralevich
· 12 years ago
7d0f955
Support running adbd in the su domain.
by Nick Kralevich
· 12 years ago
88ce951
Create new conditional userdebug_or_eng
by Nick Kralevich
· 12 years ago
09e6abd
initial dumpstate domain
by Nick Kralevich
· 12 years ago
d99e6d5
Restrict the ability to set SELinux enforcing mode to init.
by Stephen Smalley
· 12 years ago
353c72e
Move unconfined domains out of permissive mode.
by Nick Kralevich
· 12 years ago
0130154
Make sure exec_type is assigned to all entrypoint types.
by Stephen Smalley
· 12 years ago
50e37b9
Move domains into per-domain permissive mode.
by repo sync
· 12 years ago
9ceb47b
Revert "Include su.te only for userdebug/eng builds."
by Kenny Root
· 13 years ago
[Renamed from conditional/su.te]
af56ac1
Include su.te only for userdebug/eng builds.
by Matt Finifter
· 13 years ago
[Renamed from su.te]
2dd4e51
SE Android policy.
by Stephen Smalley
· 14 years ago